In the Linux kernel, the following vulnerability has been resolved: qed/qed_sriov: guard against NULL derefs from qed_iov_get_vf_info We have to make sure that the info returned by the helper is valid before using it. Found by Linux Verification Center (linuxtesting.org) with the SVACE static analysis tool.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 10 Version 1709 for 32-bit Systems |
| Linux | Linux | 10 for 32-bit Systems |