CVE-2026-43173

medium Red Hat
Published: May 6, 2026 (8 days ago)
Last Modified: May 6, 2026
Vendor: Red Hat
Source: REDHAT

Description

A flaw was found in the Linux kernel. A local user can trigger a NULL pointer dereference in the `ixp4xx_get_ts_info()` function within the network ethernet xscale driver. This occurs because `ixp46x_ptp_find()` is unconditionally called, even on systems that do not support the ixp46x PTP feature. Successful exploitation of this vulnerability leads to a kernel crash, resulting in a Denial of Service (DoS).

CWE

CWE-476

Affected Products

Red Hat Enterprise Linux 10Red Hat Enterprise Linux 6Red Hat Enterprise Linux 7Red Hat Enterprise Linux 8Red Hat Enterprise Linux 9

References