CVE-2026-53299
Beschrijving NL
In de Linux kernel is de volgende kwetsbaarheid verholpen:
net: airoha: Verplaats ndesc initialisatie aan het einde van airoha_qdma_init_tx()
Als de toewijzing van de lijst met wachtrijvermeldingen mislukt in de routine airoha_qdma_init_tx_queue,
airoha_qdma_cleanup_tx_queue() activeert een NULL POINTER-DEREFERENTIE
toegang tot de wachtrijinvoerarray. Het probleem is te wijten aan de vroege ndesc
initialisatie in airoha_qdma_init_tx_queue(). Los het probleem op met het verplaatsen van ndesc
initialisatie aan het einde van de airoha_qdma_init_tx-routine.
Origineel (Engels) tonen
In the Linux kernel, the following vulnerability has been resolved:
net: airoha: Move ndesc initialization at end of airoha_qdma_init_tx()
If queue entry list allocation fails in airoha_qdma_init_tx_queue routine,
airoha_qdma_cleanup_tx_queue() will trigger a NULL pointer dereference
accessing the queue entry array. The issue is due to the early ndesc
initialization in airoha_qdma_init_tx_queue(). Fix the issue moving ndesc
initialization at end of airoha_qdma_init_tx routine.