TopVuln

High-risk vulnerability digests

CVE-2026-23475

  • UNKNOWN

OESA-2026-2172 kernel security update

Details

CVSS v3
9.1
NVD published
2026-04-03 16:16:35
EPSS
<0.1% probability · 9.2th percentile — 2026-05-02
Affected versions
Not available in our cache.
Summary
In the Linux kernel, the following vulnerability has been resolved: spi: fix statistics allocation The controller per-cpu statistics is not allocated until after the controller has been registered with driver core, which leaves a window where accessing the sysfs attributes can trigger a NULL-pointer dereference. Fix this by moving the statistics allocation to controller allocation while tying its lifetime to that of the controller (rather than using implicit devres).
Remediation
Not available in our cache.
Exploit info
Not available in our cache.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.