CVE-2026-23353Access of Uninitialized Pointer in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 93.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 25

Description

In the Linux kernel, the following vulnerability has been resolved: ice: fix crash in ethtool offline loopback test Since the conversion of ice to page pool, the ethtool loopback test crashes: BUG: kernel NULL pointer dereference, address: 000000000000000c #PF: supervisor write access in kernel mode #PF: error_code(0x0002) - not-present page PGD 1100f1067 P4D 0 Oops: Oops: 0002 [#1] SMP NOPTI CPU: 23 UID: 0 PID: 5904 Comm: ethtool Kdump: loaded Not tainted 6.19.0-0.rc7.260128g1f97d9dcf5364.49

Affected Packages4 packages

Linuxlinux/linux_kernel6.19.06.19.7
Debianlinux/linux_kernel< 6.19.8-1
CVEListV5linux/linux93f53db9f9dc4a16b40ecd18e6d338ad57e4b67085c98b81849e4724ae99005a6cccd33cab9cfd18+2
debiandebian/linux< linux 6.19.8-1 (forky)

🔴Vulnerability Details

3
OSV
ice: fix crash in ethtool offline loopback test2026-03-25
OSV
CVE-2026-23353: In the Linux kernel, the following vulnerability has been resolved: ice: fix crash in ethtool offline loopback test Since the conversion of ice to pag2026-03-25
GHSA
GHSA-xv28-8q23-rhh6: In the Linux kernel, the following vulnerability has been resolved: ice: fix crash in ethtool offline loopback test Since the conversion of ice to p2026-03-25

📋Vendor Advisories

2
Red Hat
kernel: ice: fix crash in ethtool offline loopback test2026-03-25
Debian
CVE-2026-23353: linux - In the Linux kernel, the following vulnerability has been resolved: ice: fix cr...2026

🕵️Threat Intelligence

1
Wiz
CVE-2026-23353 Impact, Exploitability, and Mitigation Steps | Wiz