CVE-2024-52332

medium

Description

In the Linux kernel, the following vulnerability has been resolved: igb: Fix potential invalid memory access in igb_init_module() The pci_register_driver() can fail and when this happened, the dca_notifier needs to be unregistered, otherwise the dca_notifier can be called when igb fails to install, resulting to invalid memory access.

References

https://git.kernel.org/stable/c/f309733a8c9da7d4266a8a3755020b738a570cae

https://git.kernel.org/stable/c/e0155b1b1509d0ef4799bd1cd73309ca466df3f3

https://git.kernel.org/stable/c/992fd34122de377b45cb75b64fc7f17fc1e6ed2f

https://git.kernel.org/stable/c/8009cdcc493fa30d4572016daf2d6999da4d6c54

https://git.kernel.org/stable/c/4fe517643f529e805bb6b890a4331c100e8f2484

https://git.kernel.org/stable/c/4458046617dfadc351162dbaea1945c57eebdf36

https://git.kernel.org/stable/c/0566f83d206c7a864abcd741fe39d6e0ae5eef29

Details

Source: Mitre, NVD

Published: 2025-01-11

Updated: 2025-01-11

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium