CVE-2026-31549
🔶 mediumSummary
In the Linux kernel, the following vulnerability has been resolved: i2c: cp2615: fix serial string NULL-deref at probe The cp2615 driver uses the USB device serial string as the i2c adapter name but does not make sure that the string exists. Verify that the device has a serial number before accessing it to avoid triggering a NULL-pointer dereference (e.g. with malicious devices).
CVSS Score
5.5
Medium
EPSS Score
0.0
Exploit Probability
Published Date
2026-04-24
First Seen: 2026-04-27
📊 Relative Risk Intelligence
This CVE is Lower Risk - more severe than 32.7% of all 318,071 vulnerabilities in our database.
#214,189
Below average severity
Severity Percentile
Last Modified
2026-04-27
Source
NVD 🔗
CVSS Vector 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE IDs (Weakness Types)