Fiche vulnérabilité
CVE-2024-53204 : faille moyenne linux linux kernel (CVSS 5.5)
Description
In the Linux kernel, the following vulnerability has been resolved: phy: realtek: usb: fix NULL deref in rtk_usb3phy_probe In rtk_usb3phy_probe() devm_kzalloc() may return NULL but this returned value is not checked.
En bref
- Sévérité
- Moyenne (CVSS 5.5)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 27 déc. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- linux linux kernel
Références
- Fiche CVE-2024-53204 sur le NVD (NIST)
- git.kernel.org/stable/c/258ea41c926b7b3a16d0d7aa210a1401c4a16…
- git.kernel.org/stable/c/48d52d3168749e10c1c37cd4ceccd18625851…
- git.kernel.org/stable/c/776f13ad1f88485206f1dca5ef13855310695…
- git.kernel.org/stable/c/bf373d2919d98f3d1fe1b19a0304f72fe7438…
- git.kernel.org/stable/c/e27877990e54bfe4246dd850f7ec8646c999c…