In the Linux kernel, the following vulnerability has been resolved: iommu/omap: Fix regression in probe for NULL pointer dereference Commit 3f6634d997db ("iommu: Use right way to retrieve iommuops") started triggering a NULL pointer dereference for some omap variants: _iommuprobedevice from probeiommugroup+0x2c/0x38 probeiommugroup from busforeachdev+0x74/0xbc busforeachdev from busiommuprobe+0x34/0x2e8 busiommuprobe from bussetiommu+0x80/0xc8 bussetiommu from omapiommuinit+0x88/0xcc omapiommuinit from dooneinitcall+0x44/0x24 This is caused by omap iommu probe returning 0 instead of ERRPTR(-ENODEV) as noted by Jason Gunthorpe jgg@ziepe.ca. Looks like the regression already happened with an earlier commit 6785eb9105e3 ("iommu/omap: Convert to probe/releasedevice() call-backs") that changed the function return type and missed converting one place.