« Volver al listado

CVE-2026-97980

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

s390/debug: Fix NULL pointer dereference in debug_set_level()

Commit a2cec6863709 ("s390/debug: Add s390dbf kernel parameter") incorrectly removed a null-id check from debug_set_level(), introducing a possible NULL pointer dereference for debug-API users that put debug_register() results unchecked into debug_set_level().

Fix this by moving the check from the internal _debug_set_level() variant back to the external debug_set_level() wrapper.

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-97980",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "a2cec6863709d6673a025acc066c962b85a75842",
              "lessThan": "716e1cd3783806929407dbd596e6b1118971eb9e",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "a2cec6863709d6673a025acc066c962b85a75842",
              "lessThan": "b1eb31d533cdfcae1011ed53850d52f36afe5774",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "arch/s390/kernel/debug.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "7.2"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "7.2",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "7.2.7",
              "versionType": "semver",
              "lessThanOrEqual": "7.2.*"
            },
            {
              "status": "unaffected",
              "version": "7.3-rc3",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "arch/s390/kernel/debug.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-09-25T11:17:26.023",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/716e1cd3783806929407dbd596e6b1118971eb9e",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/b1eb31d533cdfcae1011ed53850d52f36afe5774",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\ns390/debug: Fix NULL pointer dereference in debug_set_level()\n\nCommit a2cec6863709 (\"s390/debug: Add s390dbf kernel parameter\")\nincorrectly removed a null-id check from debug_set_level(), introducing\na possible NULL pointer dereference for debug-API users that put\ndebug_register() results unchecked into debug_set_level().\n\nFix this by moving the check from the internal _debug_set_level()\nvariant back to the external debug_set_level() wrapper."
    }
  ],
  "lastModified": "2026-09-25T11:17:26.023",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}