CVE-2026-53299

In the Linux kernel, the following vulnerability has been resolved: net: airoha: Move ndesc initialization at end of airoha_qdma_init_tx() If queue entry list allocation fails in airoha_qdma_init_tx_queue routine, airoha_qdma_cleanup_tx_queue() will trigger a NULL pointer dereference accessing the queue entry array. The issue is due to the early ndesc initialization in airoha_qdma_init_tx_queue(). Fix the issue moving ndesc initialization at end of airoha_qdma_init_tx routine.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

08 Jul 2026, 03:39

Type Values Removed Values Added
CWE CWE-476
References () https://git.kernel.org/stable/c/90619fdedfb9cc8a80f217d882ee7a84d3703e72 - () https://git.kernel.org/stable/c/90619fdedfb9cc8a80f217d882ee7a84d3703e72 - Patch
References () https://git.kernel.org/stable/c/ece31f9dae0c3cd3277e66667e7b8ab2577cf34a - () https://git.kernel.org/stable/c/ece31f9dae0c3cd3277e66667e7b8ab2577cf34a - Patch
References () https://git.kernel.org/stable/c/f329924bb49458c65297f1361f545816a5b90998 - () https://git.kernel.org/stable/c/f329924bb49458c65297f1361f545816a5b90998 - Patch
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5

26 Jun 2026, 20:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-26 20:17

Updated : 2026-07-08 03:39


NVD link : CVE-2026-53299

Mitre link : CVE-2026-53299

CVE.ORG link : CVE-2026-53299


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference