-

CVE-2026-23019

In the Linux kernel, the following vulnerability has been resolved:

net: marvell: prestera: fix NULL dereference on devlink_alloc() failure

devlink_alloc() may return NULL on allocation failure, but
prestera_devlink_alloc() unconditionally calls devlink_priv() on
the returned pointer.

This leads to a NULL pointer dereference if devlink allocation fails.
Add a check for a NULL devlink pointer and return NULL early to avoid
the crash.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 8a4333b2818f0d853b43e139936c20659366e4a0
Version 34dd1710f5a3c9a7dc78e1ff6de69a19d407db25
Status affected
Version < 325aea74be7e192b5c947c782da23b0d19a5fda2
Version 34dd1710f5a3c9a7dc78e1ff6de69a19d407db25
Status affected
Version < 94e070cd50790317fba7787ae6006934b7edcb6f
Version 34dd1710f5a3c9a7dc78e1ff6de69a19d407db25
Status affected
Version < 3950054c9512add0cc79ab7e72b6d2f9f675e25b
Version 34dd1710f5a3c9a7dc78e1ff6de69a19d407db25
Status affected
Version < 326a4b7e61d01db3507f71c8bb5e85362f607064
Version 34dd1710f5a3c9a7dc78e1ff6de69a19d407db25
Status affected
Version < a428e0da1248c353557970848994f35fd3f005e2
Version 34dd1710f5a3c9a7dc78e1ff6de69a19d407db25
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.10
Status affected
Version < 5.10
Version 0
Status unaffected
Version <= 5.15.*
Version 5.15.198
Status unaffected
Version <= 6.1.*
Version 6.1.161
Status unaffected
Version <= 6.6.*
Version 6.6.121
Status unaffected
Version <= 6.12.*
Version 6.12.66
Status unaffected
Version <= 6.18.*
Version 6.18.6
Status unaffected
Version <= *
Version 6.19-rc5
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.059
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.