Home

Description

In the Linux kernel, the following vulnerability has been resolved: staging: rtl8723bs: os_dep: avoid NULL pointer dereference in rtw_cbuf_alloc The return value of kzalloc_flex() is used without ensuring that the allocation succeeded, and the pointer is dereferenced unconditionally. Guard the access to the allocated structure to avoid a potential NULL pointer dereference if the allocation fails.

PUBLISHED Reserved 2026-05-13 | Published 2026-06-08 | Updated 2026-06-08 | Assigner Linux

Product status

Default status
unaffected

980cd426a25747daf8ed25e2a1904b2d26ffbb3d (git) before 0a5f411becfb7c57aa89827213d31ef23a03d75a
affected

980cd426a25747daf8ed25e2a1904b2d26ffbb3d (git) before bc851db06045a40c18233dd76ef0562d7f8bb6db
affected

Default status
affected

7.0
affected

Any version before 7.0
unaffected

7.0.7 (semver)
unaffected

7.1-rc3 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/0a5f411becfb7c57aa89827213d31ef23a03d75a

git.kernel.org/...c/bc851db06045a40c18233dd76ef0562d7f8bb6db

cve.org (CVE-2026-46305)

nvd.nist.gov (CVE-2026-46305)

Download JSON