CVE-2024-42081

MEDIUM

Linux Kernel < 6.9.8 - NULL Pointer Dereference in Xe Devcoredump Snapshot

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/xe/xe_devcoredump: Check NULL before assignments Assign 'xe_devcoredump_snapshot *' and 'xe_device *' only if 'coredump' is not NULL. v2 - Fix commit messages. v3 - Define variables before code.(Ashutosh/Jose) v4 - Drop return check for coredump_to_xe. (Jose/Rodrigo) v5 - Modify misleading commit message. (Matt)

Scores

CVSS v3 5.5
EPSS 0.0019
EPSS Percentile 9.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (8)
linux/Kernel 6.8.0 - 6.9.8linux
Linux/Linux < 6.8
Linux/Linux 6.10
Linux/Linux 6.8
Linux/Linux 6.9.8 - 6.9.*
Linux/Linux dd08ebf6c3525a7ea2186e636df064ea47281987 - 76ec0e33707282d5321555698d902f4e067aff37
Linux/Linux dd08ebf6c3525a7ea2186e636df064ea47281987 - b15e65349553b1689d15fbdebea874ca5ae2274a
linux/linux_kernel < 6.9.8
Published Jul 29, 2024
Tracked Since Feb 18, 2026