---
cve: "CVE-2026-89822"
severity: "LOW"
cvss: 3.1
epss: "0.2%"
vendor: "Linux"
kev: false
exploited: false
published: "2026-09-16 11:16:47"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-20T23:27:39+02:00"
---

# CVE-2026-89822

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

drm/i915: Guard against NULL driver_data in i915_pci_probe()

pci_match_device() can return the dummy pci_device_id_any entry
when a device is force-bound via sysfs driver_override, in which
case ->driver_data is unset (NULL). i915_pci_probe() casts it to
struct intel_device_info * unconditionally and dereferences
intel_info->require_force_probe, causing a NULL-ptr-deref.

(cherry picked from commit 2727922084672cc274ecea726ea00363c2893731)

## Patch verfügbar (OSV)

- Kernel ≥ 6.1.188
- Kernel ≥ 6.6.157
- Kernel ≥ 6.12.110
- Kernel ≥ 6.18.51
- Kernel ≥ 7.2.5

## Referenzen

- <https://git.kernel.org/stable/c/2239e6b49d33bb38817d69b4f0bf7d5cbde2ec68>
- <https://git.kernel.org/stable/c/4a0236fe97732e31cb4a6dcb433642f9e3ef9a56>
- <https://git.kernel.org/stable/c/e351cb2d373f6f1d4f1eb7c9f30dc058c69c89f8>
- <https://git.kernel.org/stable/c/18b3433f10ee9c69e3252046028aa2be421f2d4d>
- <https://git.kernel.org/stable/c/84829e324a396668ceafb14723293b2863a74dcf>
- <https://git.kernel.org/stable/c/3785d40831ba5601296283e0197e10e089392757>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-89822) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
