CVE-2026-43123 PUBLISHED

In the Linux kernel, the following vulnerability has been resolved: fbcon: check return value of con2fb_acquire_newinfo() If fbcon_open() fails when called from con2fb_acquire_newinfo() then info->fbcon_par pointer remains NULL which is later dereferenced. Add check for return value of the function con2fb_acquire_newinfo() to avoid it. Found by Linux Verification Center (linuxtesting.org) with SVACE.

Affected Products

VendorProductVersions
LinuxLinuxd1baa4ffa677bf6986c460fcfd4cdaf8bfe66f0e, d1baa4ffa677bf6986c460fcfd4cdaf8bfe66f0e, d1baa4ffa677bf6986c460fcfd4cdaf8bfe66f0e
linuxlinux_kernel2.6.23, 2.6.23, 2.6.23

Timeline

References

Open in Interactive Console →