PT-2026-34914 · Linux · Linux Kernel
CVE-2026-31562
·
Published
2026-03-22
·
Updated
2026-08-30
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the drm/mediatek component where driver data is not stored before the
mipi dsi host register function is invoked. This causes the mtk dsi bind function to attempt to retrieve the mtk dsi struct via dev get drvdata while the driver data is still uninitialized. This sequence leads to a kernel NULL pointer dereference and a subsequent system crash during the mediatek-drm probe, which blocks all following DRM operations.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Access of Uninitialized Pointer
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel