dm-verity: fix a possible NULL pointer dereference
Summary
| CVE | CVE-2026-72097 |
|---|---|
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-15 06:21:23 UTC |
| Updated | 2026-08-17 06:18:08 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved: dm-verity: fix a possible NULL pointer dereference Fix a possible NULL pointer dereference dm_verity_loadpin_is_bdev_trusted if the device has no table. |
Risk And Classification
EPSS: 0.002050000 probability, percentile 0.108840000 (date 2026-08-17)
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Linux | Linux | affected b6c1c5745ccc68ac5d57c7ffb51ea25a86d0e97b 7d4f1d307ac0f4f55cebeb192a90a235aa060ed1 git | Not specified |
| CNA | Linux | Linux | affected b6c1c5745ccc68ac5d57c7ffb51ea25a86d0e97b 1f04b390add2e14c5b36829a0a1529c4eb65a2e1 git | Not specified |
| CNA | Linux | Linux | affected b6c1c5745ccc68ac5d57c7ffb51ea25a86d0e97b 32f8231c81bd45ab92d49b646a154551f7d54f4f git | Not specified |
| CNA | Linux | Linux | affected b6c1c5745ccc68ac5d57c7ffb51ea25a86d0e97b f15eaa3801f2f9207dff156f1ab3e7436ce52bb1 git | Not specified |
| CNA | Linux | Linux | affected b6c1c5745ccc68ac5d57c7ffb51ea25a86d0e97b 81f41d989a32458ff3512f6b05458eaf8926579c git | Not specified |
| CNA | Linux | Linux | affected b6c1c5745ccc68ac5d57c7ffb51ea25a86d0e97b e72b793ae440f6900fb17a4b8518c707b5cd3e17 git | Not specified |
| CNA | Linux | Linux | affected 6.0 | Not specified |
| CNA | Linux | Linux | unaffected 6.0 semver | Not specified |
| CNA | Linux | Linux | unaffected 6.1.178 6.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.6.145 6.6.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.12.97 6.12.* semver | Not specified |
| CNA | Linux | Linux | unaffected 6.18.40 6.18.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.1.5 7.1.* semver | Not specified |
| CNA | Linux | Linux | unaffected 7.2 * original_commit_for_fix | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| git.kernel.org/stable/c/f15eaa3801f2f9207dff156f1ab3e7436ce52bb1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/1f04b390add2e14c5b36829a0a1529c4eb65a2e1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/e72b793ae440f6900fb17a4b8518c707b5cd3e17 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/81f41d989a32458ff3512f6b05458eaf8926579c | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/32f8231c81bd45ab92d49b646a154551f7d54f4f | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| git.kernel.org/stable/c/7d4f1d307ac0f4f55cebeb192a90a235aa060ed1 | 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | git.kernel.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.