CVE-2026-53298

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Move ndesc initialization at end of airoha_qdma_init_rx_queue() If queue entry or DMA descriptor list allocation fails in airoha_qdma_init_rx_queue routine, airoha_qdma_cleanup() will trigger a NULL pointer dereference running netif_napi_del() for RX queue NAPIs since netif_napi_add() has never been executed to this particular RX NAPI. The issue is due to the early ndesc initialization in airoha_qdma_init_rx_queue() since airoha_qdma_cleanup() relies on ndesc value to check if the queue is properly initialized. Fix the issue moving ndesc initialization at end of airoha_qdma_init_tx routine. Move page_pool allocation after descriptor list allocation in order to avoid memory leaks if desc allocation fails.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

08 Jul 2026, 03:39

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/14dc48e5ba73d5c69559bf1a1a6884f7843aade7 - () https://git.kernel.org/stable/c/14dc48e5ba73d5c69559bf1a1a6884f7843aade7 - Patch
References () https://git.kernel.org/stable/c/379050947a1828826ad7ea50c95245a56929b35a - () https://git.kernel.org/stable/c/379050947a1828826ad7ea50c95245a56929b35a - Patch
References () https://git.kernel.org/stable/c/4d4acfa348a1d8c0941004823662ede0fdb5dea5 - () https://git.kernel.org/stable/c/4d4acfa348a1d8c0941004823662ede0fdb5dea5 - Patch
References () https://git.kernel.org/stable/c/d36be272adda7f313e39dd118086955d993bf6a7 - () https://git.kernel.org/stable/c/d36be272adda7f313e39dd118086955d993bf6a7 - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-476
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux linux Kernel
Linux

26 Jun 2026, 20:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-26 20:17

Updated : 2026-07-08 03:39


NVD link : CVE-2026-53298

Mitre link : CVE-2026-53298

CVE.ORG link : CVE-2026-53298


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference