{"id":"CVE-2026-90335","published":"2026-09-17T17:17:32.073","lastModified":"2026-09-17T17:17:32.073","description":"In the Linux kernel, the following vulnerability has been resolved:\n\ntty: skip cdev_del() when no cdev is registered\n\nTTY device registration can fail before a cdev is allocated.\nSerial core keeps the port so setserial can still use it, and later\nremoval passes the NULL cdev slot to cdev_del(), causing a NULL-pointer\ndereference.\n\nOnly delete the cdev when the slot is not NULL.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":[],"vendors":[],"products":[],"references":[{"url":"https://git.kernel.org/stable/c/3dbf85ef40b6366ba15e882f7536cdc98bea579a","tags":[]},{"url":"https://git.kernel.org/stable/c/c3b5623fd97648f2747444aa8932ae604662df93","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}