firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get()
Summary
| CVE | CVE-2026-68444 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-12 00:17:44 UTC |
| Updated | 2026-08-12 00:17:44 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
firmware: arm_ffa: Fix NULL dereference in ffa_partition_info_get()
ffa_partition_info_get() passes uuid_str directly to uuid_parse()
without a NULL check. When a caller passes NULL, uuid_parse() ->
__uuid_parse() -> uuid_is_valid() dereferences the pointer, causing
a kernel panic:
| Unable to handle kernel NULL pointer dereference at virtual address
| 0000000000000040
| pc : uuid_parse+0x40/0xac
| lr : ffa_partition_info_get+0x1c/0x94 [arm_ffa]
Add a NULL guard before uuid_parse() so a NULL argument returns
-ENODEV instead of crashing. Callers are expected to always supply
a valid partition UUID, so NULL is not a supported input. |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected d0c0bce831223b08e5bade2cefc93c3ddb790796 86f5ea90f73bb7154593bb96f3411e197f3d4fbe git |
Not specified |
| CNA |
Linux |
Linux |
affected d0c0bce831223b08e5bade2cefc93c3ddb790796 7201e56e52d18abf4cd0a2fee45daf9dc08b5b97 git |
Not specified |
| CNA |
Linux |
Linux |
affected d0c0bce831223b08e5bade2cefc93c3ddb790796 996c5c19d5b5ac5b98a7b5a406b548305841c301 git |
Not specified |
| CNA |
Linux |
Linux |
affected d0c0bce831223b08e5bade2cefc93c3ddb790796 12a42c610e4432e7708cc48d607e5903fffe0aad git |
Not specified |
| CNA |
Linux |
Linux |
affected d0c0bce831223b08e5bade2cefc93c3ddb790796 8ae5f8e4836667fcaffdf2e3c6068b0a8b364dd8 git |
Not specified |
| CNA |
Linux |
Linux |
affected 5.14 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 5.14 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.6.148 6.6.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.12.101 6.12.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.42 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.1.6 7.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2-rc4 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/7201e56e52d18abf4cd0a2fee45daf9dc08b5b97 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/8ae5f8e4836667fcaffdf2e3c6068b0a8b364dd8 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/86f5ea90f73bb7154593bb96f3411e197f3d4fbe |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/12a42c610e4432e7708cc48d607e5903fffe0aad |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/996c5c19d5b5ac5b98a7b5a406b548305841c301 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.