PT-2026-94920 · Linux · Linux Kernel

CVE-2026-93124

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the asus-wireless platform driver where the asus wireless probe() function returns success even when acpi match acpi device() finds no match. This occurs because platform drivers can be forced to match devices that do not match their device ID lists via device match driver override(). If the driver is force-bound to a device without an ACPI companion object, it stores a NULL companion pointer. Subsequently, the asus wireless remove() function passes this NULL pointer to acpi dev remove notify handler(), resulting in a NULL pointer dereference during the unbind process. A NULL pointer dereference is a runtime error that occurs when a program attempts to read or write to a memory address that is NULL.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-93124
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel