NULL pointer dereference in Linux kernel - CVE-2026-63972
Published: July 20, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in mana_detach() when handling queue reset recovery after a previous detach succeeded but attach failed. A local user can trigger queue reset handling to cause a denial of service.
The issue occurs when the port is already in a detached state and transmit and receive queue resources have already been freed.