CVE-2024-56746

MEDIUM

Linux kernel - Memory Corruption

Title source: llm

Description

In the Linux kernel, the following vulnerability has been resolved: fbdev: sh7760fb: Fix a possible memory leak in sh7760fb_alloc_mem() When information such as info->screen_base is not ready, calling sh7760fb_free_mem() does not release memory correctly. Call dma_free_coherent() instead.

Scores

CVSS v3 5.5
EPSS 0.0001
EPSS Percentile 2.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-401
Status published

Affected Products (9)

linux/linux_kernel < 4.19.325
linux/Kernel < 4.19.325linux
linux/Kernel < 5.4.287linux
linux/Kernel < 5.10.231linux
linux/Kernel < 5.15.174linux
linux/Kernel < 6.1.120linux
linux/Kernel < 6.6.64linux
linux/Kernel < 6.11.11linux
linux/Kernel < 6.12.2linux

Timeline

Published Dec 29, 2024
Tracked Since Feb 18, 2026