CVE-2024-50103

medium

Description

In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: Fix NULL Dereference in asoc_qcom_lpass_cpu_platform_probe() A devm_kzalloc() in asoc_qcom_lpass_cpu_platform_probe() could possibly return NULL pointer. NULL Pointer Dereference may be triggerred without addtional check. Add a NULL check for the returned pointer.

References

https://git.kernel.org/stable/c/e19bf49e903337641fc230d430d49813e3199902

https://git.kernel.org/stable/c/a8e691fe1894c8bdf815a6171ee22ae7da8b18aa

https://git.kernel.org/stable/c/73cc3f905ca9aa95694eea3dfa1acadc90686368

https://git.kernel.org/stable/c/49da1463c9e3d2082276c3e0e2a8b65a88711cd2

https://git.kernel.org/stable/c/1e235d02d803660777ec911a2c467ae41f8539f5

https://git.kernel.org/stable/c/03c9c2c2d2d0fe203dfe8f56bedbcf04e303d7c4

Details

Source: Mitre, NVD

Published: 2024-11-05

Updated: 2024-11-08

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium