5.5
CVE-2026-64227
- EPSS 0.12%
- Veröffentlicht 24.07.2026 15:23:10
- Zuletzt bearbeitet 13.08.2026 12:00:54
- CVE-Watchlists
- Unerledigt
ACPI: driver: Check ACPI_COMPANION() against NULL during probe
In the Linux kernel, the following vulnerability has been resolved: ACPI: driver: Check ACPI_COMPANION() against NULL during probe Since every platform driver can be forced to match a device that doesn't match its list of device IDs because of device_match_driver_override(), platform drivers that rely on the existence of a device's ACPI companion object should verify its presence. Accordingly, add requisite ACPI_COMPANION() or ACPI_HANDLE() checks against NULL to 13 platform drivers handling core ACPI devices. Also change the value returned by the ACPI thermal zone driver when the device's ACPI companion is not present to -ENODEV for consistency with the other drivers.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 6.7 < 6.12.97
Linux ≫ Linux Kernel Version >= 6.13 < 6.18.40
Linux ≫ Linux Kernel Version >= 6.19 < 7.0.11
Linux ≫ Linux Kernel Version7.1 Updaterc1
Linux ≫ Linux Kernel Version7.1 Updaterc2
Linux ≫ Linux Kernel Version7.1 Updaterc3
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.024 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-476 NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
https://git.kernel.org/stable/c/a9451bf561232314755baf69a5916e0ac77f33fc
https://git.kernel.org/stable/c/34f4d0e4e5065237d15651df759a99e81b7f9f51
https://git.kernel.org/stable/c/612ddab8fce04394bd7aebe8e0f2599642e30859
https://git.kernel.org/stable/c/e4865a56d013e86e46ea6acea15bb6eae01898ff