CVE-2026-89822

Unknown

Last modified

CVE-2026-89822 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: drm/i915: Guard against NULL driver_data in i915_pci_probe() pci_match_device() can return the dummy pci_device_id_any entry when a device is force-bound via sysfs driver_override, in which case ->driver_data is unset (NULL). i915_pci_probe() casts it to struct intel_device_info * unconditionally and dereferences intel_info->require_force_probe, causing a NULL-ptr-deref. (cherry picked from commit 2727922084672cc274ecea726ea00363c2893731).

Description

In the Linux kernel, the following vulnerability has been resolved: drm/i915: Guard against NULL driver_data in i915_pci_probe() pci_match_device() can return the dummy pci_device_id_any entry when a device is force-bound via sysfs driver_override, in which case ->driver_data is unset (NULL). i915_pci_probe() casts it to struct intel_device_info * unconditionally and dereferences intel_info->require_force_probe, causing a NULL-ptr-deref. (cherry picked from commit 2727922084672cc274ecea726ea00363c2893731)

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 782a985d7af26db39e86070d28f987cad21313c0, < 2239e6b49d33bb38817d69b4f0bf7d5cbde2ec68; >= 782a985d7af26db39e86070d28f987cad21313c0, < 4a0236fe97732e31cb4a6dcb433642f9e3ef9a56; >= 782a985d7af26db39e86070d28f987cad21313c0, < e351cb2d373f6f1d4f1eb7c9f30dc058c69c89f8; >= 782a985d7af26db39e86070d28f987cad21313c0, < 18b3433f10ee9c69e3252046028aa2be421f2d4d; >= 782a985d7af26db39e86070d28f987cad21313c0, < 84829e324a396668ceafb14723293b2863a74dcf; >= 782a985d7af26db39e86070d28f987cad21313c0, < 3785d40831ba5601296283e0197e10e089392757
LinuxLinux3.16

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-89822?
In the Linux kernel, the following vulnerability has been resolved: drm/i915: Guard against NULL driver_data in i915_pci_probe() pci_match_device() can return the dummy pci_device_id_any entry when a device is force-bound via sysfs driver_override, in which case ->driver_data is unset (NULL). i915_pci_probe() casts it to struct intel_device_info * unconditionally and dereferences intel_info->require_force_probe, causing a NULL-ptr-deref. (cherry picked from commit 2727922084672cc274ecea726ea00363c2893731)
How severe is CVE-2026-89822?
Severity scoring for CVE-2026-89822 is pending analysis.
How do I fix CVE-2026-89822?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-89822?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST