SB2026021671 - NULL pointer dereference in Linux kernel freescale dpaa2 driver
Published: February 16, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2026-23206)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to NULL pointer dereference within the dpaa2_switch_init() function in drivers/net/ethernet/freescale/dpaa2/dpaa2-switch.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/155eb99aff2920153bf21217ae29565fff81e6af
- https://git.kernel.org/stable/c/2fcccca88456b592bd668db13aa1d29ed257ca2b
- https://git.kernel.org/stable/c/4acc40db06ffd0fd92683505342b00c8a7394c60
- https://git.kernel.org/stable/c/80165ff16051448d6f840585ebe13f2400415df3
- https://git.kernel.org/stable/c/b97415c4362f739e25ec6f71012277086fabdf6f
- https://git.kernel.org/stable/c/ed48a84a72fefb20a82dd90a7caa7807e90c6f66