CVE-2026-80597 PUBLISHED

mtd: maps: vmu-flash: fix NULL pointer dereference in initialization

Assigner: Linux
Reserved: 26.08.2026 Published: 28.08.2026 Updated: 28.08.2026

In the Linux kernel, the following vulnerability has been resolved:

mtd: maps: vmu-flash: fix NULL pointer dereference in initialization

The mtd_info contains a struct device, which must be linked to its parent. Without this, the initialization of the MTD fails with a NULL pointer dereference.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to ff6453502c722437e37238900c9e45a1fec34455 (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to c60a627edbbd66bfbb0a0f564e64084c23c7ce98 (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to 0db62da830ec57ad3efe24337763c8bf5442c6be (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to 44c6abf5d823de796319d6e23c282ed5b68dc41b (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to b80a7b8f1a10e9270160b9d33f1253da2195c827 (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to 9ac007affa77c3dc3def53760e3d69c350fc9967 (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to f4599793240dd60a0a708ef1fe116223f47aa105 (excl.)
  • affected from 47a72688fae7298e1ad5fdc9bff7e04b6a549620 to 357e3b8e3a8769ba36eb8ec5e053e4825f1a9329 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 2.6.30 is affected
  • unaffected from 0 to 2.6.30 (excl.)
  • unaffected from 5.10.261 to 5.10.* (incl.)
  • unaffected from 5.15.212 to 5.15.* (incl.)
  • unaffected from 6.1.178 to 6.1.* (incl.)
  • unaffected from 6.6.145 to 6.6.* (incl.)
  • unaffected from 6.12.97 to 6.12.* (incl.)
  • unaffected from 6.18.40 to 6.18.* (incl.)
  • unaffected from 7.1.5 to 7.1.* (incl.)
  • unaffected from 7.2 to * (incl.)

References