Answer in brief
CVE-2026-98008 records a Unknown severity vulnerability in net: macb: fix NULL pointer dereference on unbind with fixed-link. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=d0c3601f2c4e12e7689b0f46ebc17525250ea8c3 <f737d999fcb8f276d77b01ea4c2016ee01dad19b || >=d0c3601f2c4e12e7689b0f46ebc17525250ea8c3 <5710f6a74f63cbba0e15cd75917234916181c9d4 || >=d0c3601f2c4e12e7689b0f46ebc17525250ea8c3 <edb39c7666bb3924da761dfb417db85c1e5d8ad3 || >=d0c3601f2c4e12e7689b0f46ebc17525250ea8c3 <38b6be101006d3e7af972999f45d4f1e8250587a || cafa5942bd2df3d80e3eeb2deb4bc050f7761f3d || c81dcaa9cd0b66816c2ecb6c5df0b6afde9c7da5 || 831e19e565b5210930fa183730071f8290c61263 || 81db1e52848694761a1aa162ce76198af9964ed8 || 19088c5378c9fea54e552d8bc7418a3aa1e06990 || >=5.10.228 <5.11 || >=5.15.169 <5.16 || >=6.1.114 <6.2 || >=6.6.58 <6.7 || >=6.11.5 <6.12 | f737d999fcb8f276d77b01ea4c2016ee01dad19b, 5710f6a74f63cbba0e15cd75917234916181c9d4, edb39c7666bb3924da761dfb417db85c1e5d8ad3, 38b6be101006d3e7af972999f45d4f1e8250587a, 5.11, 5.16, 6.2, 6.7, 6.12 |
| Linux/Linuxgeneric | 6.12 | Not reported |
Published upstream
Sep 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 25, 2026
In the Linux kernel, the following vulnerability has been resolved: net: macb: fix NULL pointer dereference on unbind with fixed-link When the device tree describes a fixed-link and has no "mdio" child node, macb_mii_init() returns early without allocating the MDIO bus, leaving bp->mii_bus as NULL. Two cleanup paths then dereference this NULL bus: 1. On driver unbind, macb_remove() unconditionally calls mdiobus_unregister(bp->mii_bus), which oopses: Unable to handle kernel NULL pointer dereference at virtual address 00000000000004a8 pc : mdiobus_unregister+0x14/0xa4 lr : macb_remove+0x38/0xa4 Call trace: mdiobus_unregister+0x14/0xa4 (P) macb_remove+0x38/0xa4 platform_remove+0x20/0x30 device_release_driver_internal+0x1c8/0x224 unbind_store+0xb4/0xbc 2. On the probe error path in macb_probe(), reached when macb_mii_init() has succeeded but a subsequent step fails, the err_out_unregister_mdio label runs the same unconditional cleanup. mdiobus_unregister() and mdiobus_free() do not guard against a NULL bus, so guard the calls in both macb_remove() and the probe error path.
Quoted source text, attributed separately from HOL analysis.