cbcvebase.
CVE-2024-38547
published 2024-06-19

CVE-2024-38547: In the Linux kernel, the following vulnerability has been resolved: media: atomisp: ssh_css: Fix a null-pointer dereference in load_video_binaries The…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.1th percentile
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: ssh_css: Fix a null-pointer dereference in load_video_binaries The allocation failure of mycs->yuv_scaler_binary in load_video_binaries() is followed with a dereference of mycs->yuv_scaler_binary after the following call chain: sh_css_pipe_load_binaries() |-> load_video_binaries(mycs->yuv_scaler_binary == NULL) | |-> sh_css_pipe_unload_binaries() |-> unload_video_binaries() In unload_video_binaries(), it calls to ia_css_binary_unload with argument &pipe->pipe_settings.video.yuv_scaler_binary[i], which refers to the same memory slot as mycs->yuv_scaler_binary. Thus, a null-pointer dereference is triggered.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= a49d25364dfb9f8a64037488a39ab1f56c5fa419 < 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb65451b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 4b68b861b514a5c09220d622ac3784c0ebac6c804b68b861b514a5c09220d622ac3784c0ebac6c80
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 82c2c85aead3ea3cbceef4be077cf459c5df227282c2c85aead3ea3cbceef4be077cf459c5df2272
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < a1ab99dcc8604afe7e3bccb01b10da03bdd7ea35a1ab99dcc8604afe7e3bccb01b10da03bdd7ea35
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < cc20c87b04db86c8e3e810bcdca686b406206069cc20c87b04db86c8e3e810bcdca686b406206069
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 69b27ff82f87379afeaaea4b2f339032fdd8486e69b27ff82f87379afeaaea4b2f339032fdd8486e
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 6482c433863b257b0b9b687c28ce80b89d5f89f06482c433863b257b0b9b687c28ce80b89d5f89f0
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 3b621e9e9e148c0928ab109ac3d4b81487469acb3b621e9e9e148c0928ab109ac3d4b81487469acb
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 4.12 < 5.10.2195.10.219
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 6.2 < 6.6.336.6.33
linuxlinux_kernel>= 6.7 < 6.8.126.8.12
linuxlinux_kernel>= 6.9 < 6.9.36.9.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.