Fiche vulnérabilité
CVE-2024-53230 : faille moyenne linux linux kernel (CVSS 5.5)
Description
In the Linux kernel, the following vulnerability has been resolved: cpufreq: CPPC: Fix possible null-ptr-deref for cppc_get_cpu_cost() cpufreq_cpu_get_raw() may return NULL if the cpu is not in policy->cpus cpu mask and it will cause null pointer dereference, so check NULL for cppc_get_cpu_cost().
En bref
- Sévérité
- Moyenne (CVSS 5.5)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 27 déc. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- linux linux kernel
Références
- Fiche CVE-2024-53230 sur le NVD (NIST)
- git.kernel.org/stable/c/1975b481f644f8f841d9c188e3c214fce187f…
- git.kernel.org/stable/c/1a1374bb8c5926674973d849feed500bc61ad…
- git.kernel.org/stable/c/6be57617a38b3f33266acecdb3c063c1c079a…
- git.kernel.org/stable/c/afd22d9839359829776abb55cc9bc4946e888…
- git.kernel.org/stable/c/f05ef81db63889f6f14eb77fd140dac6cedb6…
- lists.debian.org/debian-lts-announce/2025/03/msg00001.html