CVE-2024-58020

medium

Description

In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Add NULL check in mt_input_configured devm_kasprintf() can return a NULL pointer on failure,but this returned value in mt_input_configured() is not checked. Add NULL check in mt_input_configured(), to handle kernel NULL pointer dereference error.

References

https://git.kernel.org/stable/c/aa879ef6d3acf96fa2c7122d0632061d4ea58d48

https://git.kernel.org/stable/c/9b8e2220d3a052a690b1d1b23019673e612494c5

https://git.kernel.org/stable/c/97c09cc2e72769edb6994b531edcfa313b96bade

https://git.kernel.org/stable/c/62f8bf06262b6fc55c58f4c5256140f1382f3b01

https://git.kernel.org/stable/c/4e7113f591163d99adc7cbcd7295030c8c5d3fc7

Details

Source: Mitre, NVD

Published: 2025-02-27

Updated: 2025-03-06

Risk Information

CVSS v2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:S/C:N/I:N/A:C

Severity: Medium

CVSS v3

Base Score: 5.5

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Severity: Medium