Null Pointer Dereference in Linux Kernel's Watchdog Driver for MSC313E
CVE-2026-98121

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 September 2026

What is CVE-2026-98121?

A vulnerability exists in the Linux kernel's watchdog driver for the MSC313E platform. The issue arises from the msc313e_wdt_probe() function failing to set the driver data for the platform device. This oversight leads to a NULL pointer dereference in both the msc313e_wdt_suspend() and msc313e_wdt_resume() functions, which can result in system instability. The vulnerability has been addressed by ensuring that the driver data is set appropriately, preventing the NULL pointer dereference during the platform device's suspend and resume operations.

Affected Version(s)

Linux e9800b7994642a794afd4894f072541c14277ce8

Linux e9800b7994642a794afd4894f072541c14277ce8 < 744b25040d8206f7925b8ba0be5edf93fa4bf81e

Linux e9800b7994642a794afd4894f072541c14277ce8 < 6495dc16e635356fd2b7535dcbf9b6779de4e753

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.