NULL pointer dereference in Linux kernel - CVE-2026-46257
Published: June 4, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a null pointer dereference in the timer-sp804 delay timer handling when read_current_timer is called on ARM32 platforms where SP804 is not registered as the sched_clock. A local user can trigger read_current_timer to cause a denial of service.
The issue occurs because the delay timer uses an uninitialized clkevt instance under this platform-specific configuration.