CVE-2024-56546

medium

Description

In the Linux kernel, the following vulnerability has been resolved: drivers: soc: xilinx: add the missing kfree in xlnx_add_cb_for_suspend() If we fail to allocate memory for cb_data by kmalloc, the memory allocation for eve_data is never freed, add the missing kfree() in the error handling path.

References

https://git.kernel.org/stable/c/882d7afaa4b82c20a7be7a3a039532a80ebacd23

https://git.kernel.org/stable/c/5a3bda42394ff137eb2d3d3d20d2956a8c6e9237

https://git.kernel.org/stable/c/584d420771e1ad2bb74e19a19da8ae0fee0a6e1f

https://git.kernel.org/stable/c/44ed4f90a97ff6f339e50ac01db71544e0990efc

https://git.kernel.org/stable/c/272168927f38bda46f6c1ed5f40de97689e7a5d2

Details

Source: Mitre, NVD

Published: 2024-12-27

Updated: 2025-09-23

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium

EPSS

EPSS: 0.00031