NULL pointer dereference in Linux kernel - CVE-2026-89884
Published: September 17, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a missing null pointer check in the mtk-mdp3 platform driver when initializing the driver before the SCP driver has been bound. A local user can cause the affected driver to initialize before the SCP driver is bound to cause a denial of service.