CVE-2026-90271

Summary

In the Linux kernel, the following vulnerability has been resolved:

arm_mpam: Fix a NULL pointer dereference on unbinding after an error interrupt

If a user unbinds an MSC after mpam_disable() has been run in response to an error interrupt then a dereference of a NULL pointer occurs as mpam_disable() sets the drvdata to NULL. Add an early return to the driver remove callback to avoid this.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxf04046f2577a5c76167333ca99d3903ee5331ba0 < a29044c9c83513c7463de2adb84c169685562ad2affected
LinuxLinuxf04046f2577a5c76167333ca99d3903ee5331ba0 < fc996c39689bb15aa80e5366809434f7258fb703affected
LinuxLinux6.19affected
LinuxLinux0 < 6.19unaffected
LinuxLinux7.2.6 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References