NULL pointer dereference in Linux kernel - CVE-2026-80577

 

NULL pointer dereference in Linux kernel - CVE-2026-80577

Published: August 27, 2026


Vulnerability identifier: #VU145914
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-80577
CWE-ID: CWE-476
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to cause a denial of service.

The vulnerability exists due to a NULL pointer dereference in panthor firmware section handling in panthor_fw_load_section_entry() and related reload and unplug paths when processing zero-sized firmware sections. A local user can provide a crafted firmware image containing an empty section entry to cause a denial of service.

Zero-sized firmware sections are valid inputs, and the issue is triggered when such an entry is left in the firmware section list with an unset memory pointer.


Affected software

Linux kernel

How to mitigate CVE-2026-80577

Install security update from vendor's repository.

Linux kernel - update to 7.0 rc3

External References

Related Security Bulletins