๐Ÿ” CVE Alert

CVE-2026-43431

UNKNOWN 0.0

xhci: Fix NULL pointer dereference when reading portli debugfs files

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: xhci: Fix NULL pointer dereference when reading portli debugfs files Michal reported and debgged a NULL pointer dereference bug in the recently added portli debugfs files Oops is caused when there are more port registers counted in xhci->max_ports than ports reported by Supported Protocol capabilities. This is possible if max_ports is more than maximum port number, or if there are gaps between ports of different speeds the 'Supported Protocol' capabilities. In such cases port->rhub will be NULL so we can't reach xhci behind it. Add an explicit NULL check for this case, and print portli in hex without dereferencing port->rhub.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published May 8, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
384c57ec720597f8104f69082cdd261abb998b80 < 9c8bef223c6e991276188d30d74bdb2cbd8be652 384c57ec720597f8104f69082cdd261abb998b80 < ae4ff9dead5efa2025eddfcdb29411432bf40a7c
Linux / Linux
6.19

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/9c8bef223c6e991276188d30d74bdb2cbd8be652 git.kernel.org: https://git.kernel.org/stable/c/ae4ff9dead5efa2025eddfcdb29411432bf40a7c