Null Pointer Dereference in Linux Kernel's Watchdog Driver for MSC313E
CVE-2026-98121
What is CVE-2026-98121?
A vulnerability exists in the Linux kernel's watchdog driver for the MSC313E platform. The issue arises from the msc313e_wdt_probe() function failing to set the driver data for the platform device. This oversight leads to a NULL pointer dereference in both the msc313e_wdt_suspend() and msc313e_wdt_resume() functions, which can result in system instability. The vulnerability has been addressed by ensuring that the driver data is set appropriately, preventing the NULL pointer dereference during the platform device's suspend and resume operations.
Affected Version(s)
Linux e9800b7994642a794afd4894f072541c14277ce8
Linux e9800b7994642a794afd4894f072541c14277ce8 < 744b25040d8206f7925b8ba0be5edf93fa4bf81e
Linux e9800b7994642a794afd4894f072541c14277ce8 < 6495dc16e635356fd2b7535dcbf9b6779de4e753