CVE-2025-68797

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/01/2026
Last modified:
13/01/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> char: applicom: fix NULL pointer dereference in ac_ioctl<br /> <br /> Discovered by Atuin - Automated Vulnerability Discovery Engine.<br /> <br /> In ac_ioctl, the validation of IndexCard and the check for a valid<br /> RamIO pointer are skipped when cmd is 6. However, the function<br /> unconditionally executes readb(apbs[IndexCard].RamIO + VERS) at the<br /> end.<br /> <br /> If cmd is 6, IndexCard may reference a board that does not exist<br /> (where RamIO is NULL), leading to a NULL pointer dereference.<br /> <br /> Fix this by skipping the readb access when cmd is 6, as this<br /> command is a global information query and does not target a specific<br /> board context.

Impact