CVE-2026-93038

Summary

In the Linux kernel, the following vulnerability has been resolved:

iio: dac: ad5686: missing NULL check on match data

Verify that chip_info pointer is not NULL. If a user binds the driver using driver_override via sysfs with a device name not present in the id_table or of_match_table, match data will be NULL.

Affected Software

VendorProductVersion RangeStatus
LinuxLinux0eb1728461a1a84613188f394e38921e29325d30 < cdaa9cb77eb67f2d4921600f6531315040888e29affected
LinuxLinux0eb1728461a1a84613188f394e38921e29325d30 < 572a008526359cdac2fa935dad75e9d50a79792faffected
LinuxLinux7.2affected
LinuxLinux0 < 7.2unaffected
LinuxLinux7.2.6 <= 7.2.*unaffected
LinuxLinux7.3-rc1 <= *unaffected

Weaknesses

References