NULL pointer dereference in Linux kernel - CVE-2026-64165
Published: July 20, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local attacker to cause a denial of service.
The vulnerability exists due to a null pointer dereference in intcp_init_early when performing early initialization before the memory management subsystem is initialized. A local attacker can trigger the vulnerable initialization path to cause a denial of service.
The issue affects ARM Integrator/CP systems using Device Tree, and the failure may manifest as either a kernel crash or an -ENOMEM condition that prevents sched_clock_register from being called.
How to mitigate CVE-2026-64165
Sources
- https://git.kernel.org/stable/c/22c738fb51f2d8b23ddff5cc0ccb2dd685bb39d3
- https://git.kernel.org/stable/c/33ad014abec90f37dade0e00560f28864187e21a
- https://git.kernel.org/stable/c/508b1193d63b5e073a3fe103eeb785fcba2d368c
- https://git.kernel.org/stable/c/58a112b0973f6cd6bcb8c503d1ff88be411ed0f0
- https://git.kernel.org/stable/c/6624854554c4c2bdfed3559e5c11bb03b16e7bd1
- https://git.kernel.org/stable/c/812103fb6da904bd03d62cf6a9826e537318ceed
- https://git.kernel.org/stable/c/90d77b30a666049ad24df463f52e5d529c44e8cd
- https://git.kernel.org/stable/c/e984dc22e2c24dc34d6728e338c82b1ce7862753