CVE-2026-45978
In the Linux kernel, the following vulnerability has been resolved: staging: greybus: lights: avoid NULL deref gb_lights_light_config() stores channel_count before allocating the channels array. If kcalloc() fails, gb_lights_release() iterates the non-zero count and dereferences light->channels, which is NULL. Allocate channels first and only then publish channels_count so the cleanup path can't walk a NULL pointer.
Schwachstellenklasse
In the Linux kernel, the following vulnerability has been resolved: staging: greybus: lights: avoid NULL deref gb_lights_light_config() stores channel_count before allocating the channels array. If kcalloc() fails, gb_lights_release() iterates the non-zero count and dereferences light->channels, which is NULL. Allocate channels first and only then publish channels_count so the cleanup path can't walk a NULL pointer.
Betroffene Produkte
- linux linux_kernel
Quellen
- https://git.kernel.org/stable/c/01b91cb3e748032fd96bbe0043812b426a52f091
- https://git.kernel.org/stable/c/06162d85f830582da6e9e5fcf9c9504d6da9ae0b
- https://git.kernel.org/stable/c/3cbe694d235d96f628ec7dc6ae4d8bdddb768699
- https://git.kernel.org/stable/c/65f2c608096d766540953d9b170d216aa3b5eb95
- https://git.kernel.org/stable/c/a118724d7641b832fa14323e2733e28ae4834552
- https://git.kernel.org/stable/c/ba5022162da63059bae36c4fd84d7031f582c71f
Finden Sie die Schwachstelle, bevor es ein Angreifer tut.
Melden Sie sich mit GitHub an und starten Sie Ihr erstes Audit in weniger als einer Minute. Für den kostenlosen Plan ist keine Kreditkarte nötig.