cbcvebase.
CVE-2024-26771
published 2024-04-03

CVE-2024-26771: In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: edma: Add some null pointer checks to the edma_probe devm_kasprintf()…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.9th percentile
In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: edma: Add some null pointer checks to the edma_probe devm_kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure. Ensure the allocation was successful by checking the pointer validity.

Affected

20 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= d4cb7f404247173e2c760a01bf06fd1016a8b0d4 < c432094aa7c9970f2fa10d2305d550d3810657cec432094aa7c9970f2fa10d2305d550d3810657ce
linuxlinux>= d4cb7f404247173e2c760a01bf06fd1016a8b0d4 < 4fe4e5adc7d29d214c59b59f61db73dec505ca3d4fe4e5adc7d29d214c59b59f61db73dec505ca3d
linuxlinux>= d4cb7f404247173e2c760a01bf06fd1016a8b0d4 < 9d508c897153ae8dd79303f7f035f078139f6b499d508c897153ae8dd79303f7f035f078139f6b49
linuxlinux>= d4cb7f404247173e2c760a01bf06fd1016a8b0d4 < 7b24760f3a3c7ae1a176d343136b6c25174b7b277b24760f3a3c7ae1a176d343136b6c25174b7b27
linuxlinux>= d4cb7f404247173e2c760a01bf06fd1016a8b0d4 < f2a5e30d1e9a629de6179fa23923a318d5feb29ef2a5e30d1e9a629de6179fa23923a318d5feb29e
linuxlinux>= d4cb7f404247173e2c760a01bf06fd1016a8b0d4 < 6e2276203ac9ff10fc76917ec9813c660f6273696e2276203ac9ff10fc76917ec9813c660f627369
linuxlinux_kernel< 5.10.2115.10.211
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122
linuxlinux_kernel>= 5.11 < 5.15.1505.15.150
linuxlinux_kernel>= 5.16 < 6.1.806.1.80
linuxlinux_kernel>= 6.2 < 6.6.196.6.19
linuxlinux_kernel>= 6.7 < 6.7.76.7.7

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.