5.5
CVE-2026-46092
- EPSS 0.14%
- Veröffentlicht 27.05.2026 12:58:37
- Zuletzt bearbeitet 16.07.2026 12:17:59
- CVE-Watchlists
- Unerledigt
wifi: rtw88: check for PCI upstream bridge existence
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: check for PCI upstream bridge existence pci_upstream_bridge() returns NULL if the device is on a root bus. If 8821CE is installed in the system with such a PCI topology, the probing routine will crash. This has probably been unnoticed as 8821CE is mostly supplied in laptops where there is a PCI-to-PCI bridge located upstream from the device. However the card might be installed on a system with different configuration. Check if the bridge does exist for the specific workaround to be applied. Found by Linux Verification Center (linuxtesting.org) with Svace static analysis tool.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.15.17 < 5.16
Linux ≫ Linux Kernel Version >= 5.16.3 < 7.1
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.14% | 0.034 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-476 NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
https://git.kernel.org/stable/c/eb101d2abdcccb514ca4fccd3b278dd8267374f6
https://git.kernel.org/stable/c/000134a20bbf89b1152520a2eef71f91fdb83a5b
https://git.kernel.org/stable/c/3b89b4c095804c478d50376285e66700cf3c045f
https://git.kernel.org/stable/c/3bbbb56204f7359ce2139a9341b43b52a186261c
https://git.kernel.org/stable/c/6c53d68e3bcfc8faccdd76c3383a9232b05c9ae6
https://git.kernel.org/stable/c/959c13da6c36167ce1016d400a6104d2367f686e
https://git.kernel.org/stable/c/cc9b6303e7ea91bc360b42c7edc1fe9ceb2f47fe