cbcvebase.
CVE-2024-41095
published 2024-07-29

CVE-2024-41095: In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_ld_modes In…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.6th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_ld_modes In nv17_tv_get_ld_modes(), the return value of drm_mode_duplicate() is assigned to mode, which will lead to a possible NULL pointer dereference on failure of drm_mode_duplicate(). Add a check to avoid npd.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.98-1 (bookworm)linux 6.1.98-1 (bookworm)
debianlinux-6.1< linux 6.1.98-1 (bookworm)linux 6.1.98-1 (bookworm)
linuxlinux
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < 9289cd3450d1da3e271ef4b054d4d2932c41243e9289cd3450d1da3e271ef4b054d4d2932c41243e
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < dbd75f32252508ed6c46c3288a282c301a57ceebdbd75f32252508ed6c46c3288a282c301a57ceeb
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < 259549b2ccf795b7f91f7b5aba47286addcfa389259549b2ccf795b7f91f7b5aba47286addcfa389
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < 0d17604f2e44b3df21e218fe8fb3b836d41bac490d17604f2e44b3df21e218fe8fb3b836d41bac49
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < f95ed0f54b3d3faecae1140ddab854f904a6e7c8f95ed0f54b3d3faecae1140ddab854f904a6e7c8
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < cb751e48bbcffd292090f7882b23b215111b3d72cb751e48bbcffd292090f7882b23b215111b3d72
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < bdda5072494f2a7215d94fc4124ad1949a218714bdda5072494f2a7215d94fc4124ad1949a218714
linuxlinux>= 6ee738610f41b59733f63718f0bdbcba7d3a3f12 < 66edf3fb331b6c55439b10f9862987b0916b372666edf3fb331b6c55439b10f9862987b0916b3726
linuxlinux_kernel< 4.19.3174.19.317
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.98-16.1.98-1
linuxlinux_kernel>= 0 < 6.9.8-16.9.8-1
linuxlinux_kernel>= 0 < 6.9.8-16.9.8-1
linuxlinux_kernel>= 0 < 5.4.0-195.2155.4.0-195.215
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 0 < 4.4.0-261.2954.4.0-261.295
linuxlinux_kernel>= 0 < 4.15.0-231.2434.15.0-231.243
linuxlinux_kernel>= 4.20 < 5.4.2795.4.279
linuxlinux_kernel>= 5.11 < 5.15.1625.15.162
linuxlinux_kernel>= 5.16 < 6.1.976.1.97
linuxlinux_kernel>= 5.5 < 5.10.2215.10.221

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.