THREATINT

We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Zendesk (Helpdesk and Chat)

Ok

PUBLISHED

CVE-2024-26978

serial: max310x: fix NULL pointer dereference in I2C instantiation

Reserved:2024-02-19
Published:2024-05-01
Updated:2024-06-06

Description

In the Linux kernel, the following vulnerability has been resolved: serial: max310x: fix NULL pointer dereference in I2C instantiation When trying to instantiate a max14830 device from userspace: echo max14830 0x60 > /sys/bus/i2c/devices/i2c-2/new_device we get the following error: Unable to handle kernel NULL pointer dereference at virtual address... ... Call trace: max310x_i2c_probe+0x48/0x170 [max310x] i2c_device_probe+0x150/0x2a0 ... Add check for validity of devtype to prevent the error, and abort probe with a meaningful error message.

Product status

Default status
unaffected

f5c252aaa1be before 7d271b798add
affected

85d79478710a before c45e53c27b78
affected

2e1f2d9a9bdb before 12609c76b755
affected

2e1f2d9a9bdb before 2160ad6861c4
affected

2e1f2d9a9bdb before 5cd8af02b466
affected

2e1f2d9a9bdb before aeca49661fd0
affected

2e1f2d9a9bdb before 0d27056c24ef
affected

Default status
affected

6.0
affected

Any version before 6.0
unaffected

5.4.274
unaffected

5.10.215
unaffected

6.1.84
unaffected

6.6.24
unaffected

6.7.12
unaffected

6.8.3
unaffected

6.9
unaffected

References

https://git.kernel.org/stable/c/7d271b798add90c6196539167c019d0817285cf0

https://git.kernel.org/stable/c/c45e53c27b78afd6c81fc25608003576f27b5735

https://git.kernel.org/stable/c/12609c76b755dbeb1645c0aacc0f0f4743b2eff3

https://git.kernel.org/stable/c/2160ad6861c4a21d3fa553d7b2aaec6634a37f8a

https://git.kernel.org/stable/c/5cd8af02b466e1beeae13e2de3dc58fcc7925e5a

https://git.kernel.org/stable/c/aeca49661fd02fd56fb026768b580ce301b45733

https://git.kernel.org/stable/c/0d27056c24efd3d63a03f3edfbcfc4827086b110

cve.org CVE-2024-26978

nvd.nist.gov CVE-2024-26978

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-26978