cbcvebase.
CVE-2024-42123
published 2024-07-30

CVE-2024-42123: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix double free err_addr pointer warnings In…

PriorityP413medium4.4CVSS 3.1
AVLACLPRHUINSUCNINAH
EPSS
0.21%
11.0th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix double free err_addr pointer warnings In amdgpu_umc_bad_page_polling_timeout, the amdgpu_umc_handle_bad_pages will be run many times so that double free err_addr in some special case. So set the err_addr to NULL to avoid the warnings.

Affected

7 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.9.9-1 (forky)linux 6.9.9-1 (forky)
linuxlinux
linuxlinux>= d38ceaf99ed015f2a0b9af3499791bd3a3daae21 < 8e24beb3c2b08a4763f920399a9cc577ed440a1a8e24beb3c2b08a4763f920399a9cc577ed440a1a
linuxlinux>= d38ceaf99ed015f2a0b9af3499791bd3a3daae21 < 506c245f3f1cd989cb89811a7f06e04ff8813a0d506c245f3f1cd989cb89811a7f06e04ff8813a0d
linuxlinux_kernel<= 6.9.9
linuxlinux_kernel>= 0 < 6.9.9-16.9.9-1
linuxlinux_kernel>= 0 < 6.9.9-16.9.9-1

CVSS provenance

nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
osv4.4MEDIUM
vendor_debian4.4MEDIUM
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.