PT-2026-44241 · Linux+2 · Linux Kernel+2

CVE-2026-46118

·

Published

2026-05-06

·

Updated

2026-09-07

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A null pointer dereference occurs in the papr hvpipe dev create handle() function. This issue was introduced when the function was converted to use FD PREPARE(), which caused the src info variable to be nullified by retain and null ptr(src info) before it could be added to the global list. This leads to a kernel panic when the system attempts to write to a null address during the addition of src info to the list.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-13833
CVE-2026-46118
OPENSUSE-SU-2026:10954-1
USN-8566-1
USN-8568-1
USN-8569-1
USN-8593-1
USN-8603-1
USN-8618-1
USN-8663-1
USN-8664-1
USN-8728-1

Affected Products

Linuxmint
Linux Kernel
Ubuntu