CVE-2024-26771

critical

Description

In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: edma: Add some null pointer checks to the edma_probe devm_kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure. Ensure the allocation was successful by checking the pointer validity.

References

https://git.kernel.org/stable/c/f2a5e30d1e9a629de6179fa23923a318d5feb29e

https://git.kernel.org/stable/c/c432094aa7c9970f2fa10d2305d550d3810657ce

https://git.kernel.org/stable/c/9d508c897153ae8dd79303f7f035f078139f6b49

https://git.kernel.org/stable/c/7b24760f3a3c7ae1a176d343136b6c25174b7b27

https://git.kernel.org/stable/c/6e2276203ac9ff10fc76917ec9813c660f627369

https://git.kernel.org/stable/c/4fe4e5adc7d29d214c59b59f61db73dec505ca3d

Details

Source: Mitre, NVD

Published: 2024-04-03

Updated: 2024-04-03

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Severity: High

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical