NULL pointer dereference in Linux kernel - CVE-2026-80577
Published: August 27, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in panthor firmware section handling in panthor_fw_load_section_entry() and related reload and unplug paths when processing zero-sized firmware sections. A local user can provide a crafted firmware image containing an empty section entry to cause a denial of service.
Zero-sized firmware sections are valid inputs, and the issue is triggered when such an entry is left in the firmware section list with an unset memory pointer.