CVE-2024-56773

MEDIUM

Linux Kernel 6.8-6.12.3 - Null Pointer Dereference in kunit_device_driver_test

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: kunit: Fix potential null dereference in kunit_device_driver_test() kunit_kzalloc() may return a NULL pointer, dereferencing it without NULL check may lead to NULL dereference. Add a NULL check for test_state.

Scores

CVSS v3 5.5
EPSS 0.0017
EPSS Percentile 6.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-476
Status published
Products (8)
linux/Kernel 6.8.0 - 6.12.4linux
Linux/Linux < 6.8
Linux/Linux 6.12.4 - 6.12.*
Linux/Linux 6.13
Linux/Linux 6.8
Linux/Linux d03c720e03bd9bf0b784d80b5d3ede7e2daf3b6e - 435c20eed572a95709b1536ff78832836b2f91b1
Linux/Linux d03c720e03bd9bf0b784d80b5d3ede7e2daf3b6e - 5d28fac59369b5d3c48cdf09e50275a61ff91202
linux/linux_kernel 6.8 - 6.12.4
Published Jan 08, 2025
Tracked Since Feb 18, 2026