PT-2026-27693 · Linux · Linux Kernel

Published

2026-01-01

·

Updated

2026-03-28

·

CVE-2026-23328

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel's accel/amdxdna component where a NULL pointer dereference can occur in the aie2 hw stop() function. This is due to the mgmt chann potentially being set to NULL if the firmware returns an unexpected error during aie2 send mgmt msg wait(). The issue is addressed by adding NULL checks before accessing mgmt chann and introducing a helper function to destroy it.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2026-23328

Affected Products

Linux Kernel