PT-2026-105007 · Azure Linux · Kernel

Publicado

2026-09-24

·

Atualizado

2026-09-24

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
In the Linux kernel, the following vulnerability has been resolved:
usbip: vhci hcd: fix NULL deref in status show vhci
platform get drvdata() can return NULL if a VHCI host controller's probe failed (e.g. due to USB bus number exhaustion). status show vhci() checked for a NULL pdev but not for a NULL hcd returned by platform get drvdata(). Passing NULL to hcd to vhci hcd() does not return NULL - it returns a pointer offset of 0x260, causing a NULL pointer dereference when that value is subsequently dereferenced.
Add a NULL check on hcd before calling hcd to vhci hcd(). Move status show not ready() above status show vhci() to make it callable from the new error path without a forward declaration.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

AZL-104045

Produtos afetados

Kernel