cbcvebase.
CVE-2024-56705
published 2024-12-28

CVE-2024-56705: In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Add check for rgby_data memory allocation failure In…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.27%
18.6th percentile
In the Linux kernel, the following vulnerability has been resolved: media: atomisp: Add check for rgby_data memory allocation failure In ia_css_3a_statistics_allocate(), there is no check on the allocation result of the rgby_data memory. If rgby_data is not successfully allocated, it may trigger the assert(host_stats->rgby_data) assertion in ia_css_s3a_hmem_decode(). Adding a check to fix this potential issue.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= a49d25364dfb9f8a64037488a39ab1f56c5fa419 < 51b8dc5163d2ff2bf04019f8bf7e3bd0e75bb65451b8dc5163d2ff2bf04019f8bf7e3bd0e75bb654
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 0c24b82bc4d12c6a58ceacbf2598cd4df63abf9a0c24b82bc4d12c6a58ceacbf2598cd4df63abf9a
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 4676e50444046b498555b849e6080a5c78cdda9b4676e50444046b498555b849e6080a5c78cdda9b
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 02a97d9d7ff605fa4a1f908d1bd3ad8573234b6102a97d9d7ff605fa4a1f908d1bd3ad8573234b61
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 8066badaf7463194473fb4be19dbe50b11969aa08066badaf7463194473fb4be19dbe50b11969aa0
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 74aa783682c4d78c69d87898e40c78df1fec204e74aa783682c4d78c69d87898e40c78df1fec204e
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < 0c25ab93f2878cab07d37ca5afd302283201e5af0c25ab93f2878cab07d37ca5afd302283201e5af
linuxlinux>= ad85094b293e40e7a2f831b0311a389d952ebd5e < ed61c59139509f76d3592683c90dc3fdc6e23cd6ed61c59139509f76d3592683c90dc3fdc6e23cd6
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 6.12.3-16.12.3-1
linuxlinux_kernel>= 0 < 6.12.3-16.12.3-1
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 4.12 < 4.184.18
linuxlinux_kernel>= 5.11 < 5.15.1745.15.174
linuxlinux_kernel>= 5.16 < 6.1.1206.1.120
linuxlinux_kernel>= 5.8 < 5.10.2315.10.231
linuxlinux_kernel>= 6.12 < 6.12.26.12.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.