PT-2026-38955 · Linux · Linux Kernel

Published

2026-05-08

·

Updated

2026-05-15

·

CVE-2026-43313

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A NULL-pointer dereference exists in the acpi processor errata piix4() function. The issue occurs because the dev pointer is assigned an IDE device and subsequently reassigned an ISA device. If the first lookup is successful but the second fails, dev becomes NULL, leading to a crash when the dev dbg() function is called.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2026-43313
OESA-2026-2312
OESA-2026-2313
OESA-2026-2314

Affected Products

Linux Kernel