CVE-2026-43369

In the Linux kernel, the following vulnerability has been resolved: drm/amd: Fix NULL pointer dereference in device cleanup When GPU initialization fails due to an unsupported HW block IP blocks may have a NULL version pointer. During cleanup in amdgpu_device_fini_hw, the code calls amdgpu_device_set_pg_state and amdgpu_device_set_cg_state which iterate over all IP blocks and access adev->ip_blocks[i].version without NULL checks, leading to a kernel NULL pointer dereference. Add NULL checks for adev->ip_blocks[i].version in both amdgpu_device_set_cg_state and amdgpu_device_set_pg_state to prevent dereferencing NULL pointers during GPU teardown when initialization has failed. (cherry picked from commit b7ac77468cda92eecae560b05f62f997a12fe2f2)
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

15 May 2026, 15:18

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-476
References () https://git.kernel.org/stable/c/062ea905fff7756b2e87143ffccaece5cdb44267 - () https://git.kernel.org/stable/c/062ea905fff7756b2e87143ffccaece5cdb44267 - Patch
References () https://git.kernel.org/stable/c/43025c941aced9a9009f9ff20eea4eb78c61deb8 - () https://git.kernel.org/stable/c/43025c941aced9a9009f9ff20eea4eb78c61deb8 - Patch
References () https://git.kernel.org/stable/c/767cd24d3c4ae847688877def4891943f6611ecd - () https://git.kernel.org/stable/c/767cd24d3c4ae847688877def4891943f6611ecd - Patch
First Time Linux linux Kernel
Linux
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5

08 May 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-08 15:16

Updated : 2026-05-15 15:18


NVD link : CVE-2026-43369

Mitre link : CVE-2026-43369

CVE.ORG link : CVE-2026-43369


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference