CVE-2026-80689

medium

Description

In the Linux kernel, the following vulnerability has been resolved: tracing/mmiotrace: Add NULL check for mmio_trace_array in logging functions mmio_trace_rw() and mmio_trace_mapping() retrieve mmio_trace_array into tr and pass it to __trace_mmiotrace_rw() and __trace_mmiotrace_map(). If these functions are invoked while mmio_trace_array is NULL (e.g. before initialization or after disabled), accessing tr->array_buffer.buffer will result in a NULL pointer dereference crash. Fix this by adding an explicit NULL check for tr at the beginning of __trace_mmiotrace_rw() and __trace_mmiotrace_map().

References

https://git.kernel.org/stable/c/dc1b1a057b3bb901f83433700e604fe0ae67c5f2

https://git.kernel.org/stable/c/a20a0010eb6485f60cd64e15ebc85a4bd388642e

https://git.kernel.org/stable/c/876014b4eeb927146430e7591cf959a7ceb8d64a

https://git.kernel.org/stable/c/6aee2d478545c089dd5d055d3c9f0c7ea034fb80

https://git.kernel.org/stable/c/60234845142fddb27db89ebc00a65178421fb3a4

https://git.kernel.org/stable/c/4e4ab09db7899d7f2d2293a18adf0fa200a27e73

https://git.kernel.org/stable/c/2df964d141270c40f07547b0c2e0a51e2573d46d

https://git.kernel.org/stable/c/12b80cdbc54cf615b4717a4e8180063408091ea2

Details

Source: Mitre, NVD

Published: 2026-08-28

Updated: 2026-09-14

Risk Information

CVSS v2

Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00168