CVE-2024-53226

MEDIUM

Linux Kernel - NULL Pointer Dereference in hns_roce_map_mr_sg

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix NULL pointer derefernce in hns_roce_map_mr_sg() ib_map_mr_sg() allows ULPs to specify NULL as the sg_offset argument. The driver needs to check whether it is a NULL pointer before dereferencing it.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 14.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (29)
linux/Kernel < 5.10.231linux
linux/Kernel 5.11.0 - 5.15.174linux
linux/Kernel 5.16.0 - 6.1.120linux
linux/Kernel 6.11.0 - 6.12.2linux
linux/Kernel 6.2.0 - 6.6.64linux
linux/Kernel 6.7.0 - 6.11.11linux
Linux/Linux < 6.11
Linux/Linux 3c301b8a046b57e3de14c6fc669d81dcb71bb5b5 - 35f5b68f63aac61d30ce0b0c6beb09b8845a3e65
Linux/Linux 4d480e45cb7fffb9d9b49924469c1f458068080a - 6b0d7d6e6883d0ec70cd7b5a02c47c003d5defe7
Linux/Linux 5.10.224 - 5.10.231
... and 19 more
Published Dec 27, 2024
Tracked Since Feb 18, 2026