CVE-2026-80992

Source
https://cve.org/CVERecord?id=CVE-2026-80992
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80992.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80992
Downstream
Published
2026-09-11T19:42:48Z
Modified
2026-09-13T03:47:17Z
Summary
net: ravb: avoid dereferencing an invalid PTP clock
Details

In the Linux kernel, the following vulnerability has been resolved:

net: ravb: avoid dereferencing an invalid PTP clock

The PTP clock is unavailable before the first open, so querying its index can dereference a NULL pointer. Registration failures can also leave an error pointer in priv->ptp.clock.

Cache the PHC index separately and report -1 while no clock is registered. Normalize registration errors to NULL and preserve the static timestamping capabilities.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80992.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a0d2f20650e81407d8e51ad2cbdc492861c74e9c
Fixed
fc710f89a644e030a7ca15343176ca862fd61b9d
Fixed
8d4d06d6e2b501cb8e30ed3b1924c470358e8052
Fixed
0aaa53936419cf0c19c670387fc6d431e042a1b6
Fixed
1f77af0aaf277413ff32f6ff8c2c4282bd64c897

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80992.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.2.0
Fixed
6.12.109
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.50
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.4

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80992.json"