net: mscc: ocelot: Fix crash when adding interface under a lag
Published Jan 23, 2026
5.5
MEDIUMCVSS 3.1
EPSS 0.14%
Description
Commit 15faa1f67ab4 ("lan966x: Fix crash when adding interface under a lag") fixed a similar issue in the lan966x driver caused by a NULL pointer dereference. The ocelot_set_aggr_pgids() function in the ocelot driver has similar logic and is susceptible to the same crash.
This issue specifically affects the ocelot_vsc7514.c frontend, which leaves unused ports as NULL pointers. The felix_vsc9959.c frontend is unaffected as it uses the DSA framework which registers all ports.
Fix this by checking if the port pointer is valid before accessing it.
Affected products
-
Affected
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
- ≥ , <
-
Affected
- 5.12
Unaffected
- ≥ 0, < 5.12
- ≥ 5.15.198, ≤ 5.15.*
- ≥ 6.1.161, ≤ 6.1.*
- ≥ 6.12.66, ≤ 6.12.*
- ≥ 6.18.6, ≤ 6.18.*
- 6.19
- ≥ 6.6.121, ≤ 6.6.*
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
- ≥ 5.12 · < 5.15.198
- ≥ 5.16 · < 6.1.161
- ≥ 6.2 · < 6.6.121
- ≥ 6.7 · < 6.12.66
- ≥ 6.13 · < 6.18.6
- 6.19
- 6.19
- 6.19
- 6.19
No data.
Red Hat Enterprise Linux 10
kernel
Not affected
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (13)
- https://access.redhat.com/security/cve/CVE-2026-22982 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2432393 Issue Tracking
- https://cert-portal.siemens.com/productcert/html/ssa-019113.html
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-4281 Advisory
- https://git.kernel.org/stable/c/03fb1708b7d1e76aecebf767ad059c319845039f Patch
- https://git.kernel.org/stable/c/2985712dc76dfa670eb7fd607c09d4d48e5f5c6e Patch
- https://git.kernel.org/stable/c/34f3ff52cb9fa7dbf04f5c734fcc4cb6ed5d1a95 Patch
- https://git.kernel.org/stable/c/8767f238b0e6c3d0b295ac6dce9fbe6a99bd1b9d Patch
- https://git.kernel.org/stable/c/b17818307446c5a8d925a39a792261dbfa930041 Patch
- https://git.kernel.org/stable/c/f490af47bbee02441e356a1e0b86e3b3dd5120ff Patch
- https://lore.kernel.org/linux-cve-announce/2026012348-CVE-2026-22982-b250@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2026-22982
- https://www.cve.org/CVERecord?id=CVE-2026-22982
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data