Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2025-68797

Gravedad:
Pendiente de análisis
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
13/01/2026
Última modificación:
13/01/2026

Descripción

*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> char: applicom: fix NULL pointer dereference in ac_ioctl<br /> <br /> Discovered by Atuin - Automated Vulnerability Discovery Engine.<br /> <br /> In ac_ioctl, the validation of IndexCard and the check for a valid<br /> RamIO pointer are skipped when cmd is 6. However, the function<br /> unconditionally executes readb(apbs[IndexCard].RamIO + VERS) at the<br /> end.<br /> <br /> If cmd is 6, IndexCard may reference a board that does not exist<br /> (where RamIO is NULL), leading to a NULL pointer dereference.<br /> <br /> Fix this by skipping the readb access when cmd is 6, as this<br /> command is a global information query and does not target a specific<br /> board context.

Impacto