NULL pointer dereference in Linux kernel - CVE-2026-80691
Published: August 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in iblock_execute_pr_out() in the iblock SCSI target component when handling persistent reservation PREEMPT, PREEMPT_AND_ABORT, or RELEASE operations. A local user can invoke crafted persistent reservation operations to cause a denial of service.
Affected software
How to mitigate CVE-2026-80691
External References
- https://git.kernel.org/stable/c/3c60a8b4037dc35e365658fcbcb349a5d742ff49
- https://git.kernel.org/stable/c/9c33222bd387312874fbe36ca8002e5c945b9653
- https://git.kernel.org/stable/c/a326b19cfb7775378b50acaa8d836ba44e29b4c2
- https://git.kernel.org/stable/c/bdd8a1297ef101bb5ac57e53b4fbe5e364afd8b1
- https://git.kernel.org/stable/c/f15bcf9a99b1b2683fcfa005b9b3680b5600581f