cbcvebase.
CVE-2024-38615
published 2024-06-19

CVE-2024-38615: In the Linux kernel, the following vulnerability has been resolved: cpufreq: exit() callback is optional The exit() callback is optional and shouldn't be…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.7th percentile
In the Linux kernel, the following vulnerability has been resolved: cpufreq: exit() callback is optional The exit() callback is optional and shouldn't be called without checking a valid pointer first. Also, we must clear freq_table pointer even if the exit() callback isn't present.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < 2d730b465e377396d2a09a53524b96b111f7ccb62d730b465e377396d2a09a53524b96b111f7ccb6
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < dfc56ff5ec9904c008e9376d90a6d7e2d2bec4d3dfc56ff5ec9904c008e9376d90a6d7e2d2bec4d3
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < 35db5e76d5e9f752476df5fa0b9018a2398b037835db5e76d5e9f752476df5fa0b9018a2398b0378
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < 8bc9546805e572ad101681437a49939f287772738bc9546805e572ad101681437a49939f28777273
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < 3e99f060cfd2e36504d62c9132b453ade5027e1c3e99f060cfd2e36504d62c9132b453ade5027e1c
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < ae37ebca325097d773d7bb6ec069123b30772872ae37ebca325097d773d7bb6ec069123b30772872
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < a8204d1b6ff762d2171d365c2c8560285d0a233da8204d1b6ff762d2171d365c2c8560285d0a233d
linuxlinux>= 91a12e91dc39137906d929a4ff6f9c32c59697fa < b8f85833c05730d631576008daaa34096bc7f3ceb8f85833c05730d631576008daaa34096bc7f3ce
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 5.4.0-192.2125.4.0-192.212
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 5.1 < 5.4.2785.4.278
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 5.5 < 5.10.2195.10.219
linuxlinux_kernel>= 6.2 < 6.6.336.6.33
linuxlinux_kernel>= 6.7 < 6.8.126.8.12
linuxlinux_kernel>= 6.9 < 6.9.36.9.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.