NULL pointer dereference in Linux kernel - CVE-2026-89552
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper handling of allocation failures in param_set_charp() when updating charp parameters after slab allocation is available. A local user can update a charp parameter during an allocation failure to cause a denial of service.
The issue can be triggered by a failed zswap compressor update before zswap is initialized.