CVE-2024-42248

MEDIUM

Linux Kernel 6.5-6.6.40, 6.7-6.9.9, 6.10 - NULL Pointer Dereference in ma35d1 Serial Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: tty: serial: ma35d1: Add a NULL check for of_node The pdev->dev.of_node can be NULL if the "serial" node is absent. Add a NULL check to return an error in such cases.

Scores

CVSS v3 5.5
EPSS 0.0021
EPSS Percentile 11.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (11)
linux/Kernel 6.5.0 - 6.6.41linux
linux/Kernel 6.7.0 - 6.9.10linux
Linux/Linux < 6.5
Linux/Linux 6.10
Linux/Linux 6.5
Linux/Linux 6.6.41 - 6.6.*
Linux/Linux 6.9.10 - 6.9.*
Linux/Linux 930cbf92db0184e327293d5e7089be0b08d46371 - 0e0e15ab2d3a094a38525d23c03d78ec7d14a40e
Linux/Linux 930cbf92db0184e327293d5e7089be0b08d46371 - 23efa74cfe6eb923abb5b9bc51b2a04879013c67
Linux/Linux 930cbf92db0184e327293d5e7089be0b08d46371 - acd09ac253b5de8fd79fc61a482ee19154914c7a
... and 1 more
Published Aug 07, 2024
Tracked Since Feb 18, 2026