CVE-2024-39481

In the Linux kernel, the following vulnerability has been resolved: media: mc: Fix graph walk in media_pipeline_start The graph walk tries to follow all links, even if they are not between pads. This causes a crash with, e.g. a MEDIA_LNK_FL_ANCILLARY_LINK link. Fix this by allowing the walk to proceed only for MEDIA_LNK_FL_DATA_LINK links.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

08 Jul 2024, 18:01

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
First Time Linux
Linux linux Kernel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/788fd0f11e45ae8d3a8ebbd3452a6e83f92db376 - () https://git.kernel.org/stable/c/788fd0f11e45ae8d3a8ebbd3452a6e83f92db376 - Mailing List, Patch
References () https://git.kernel.org/stable/c/8a9d420149c477e7c97fbd6453704e4612bdd3fa - () https://git.kernel.org/stable/c/8a9d420149c477e7c97fbd6453704e4612bdd3fa - Mailing List, Patch
References () https://git.kernel.org/stable/c/bee9440bc0b6b3b7432f7bfde28656262a3484a2 - () https://git.kernel.org/stable/c/bee9440bc0b6b3b7432f7bfde28656262a3484a2 - Mailing List, Patch
References () https://git.kernel.org/stable/c/e80d9db99b7b6c697d8d952dfd25c3425cf61499 - () https://git.kernel.org/stable/c/e80d9db99b7b6c697d8d952dfd25c3425cf61499 - Mailing List, Patch

05 Jul 2024, 12:55

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: media: mc: corrige el recorrido del gráfico en media_pipeline_start El recorrido del gráfico intenta seguir todos los enlaces, incluso si no están entre pads. Esto provoca un bloqueo, por ejemplo, con un enlace MEDIA_LNK_FL_ANCILLARY_LINK. Solucione este problema permitiendo que la caminata continúe solo para los enlaces MEDIA_LNK_FL_DATA_LINK.

05 Jul 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-05 07:15

Updated : 2024-07-08 18:01


NVD link : CVE-2024-39481

Mitre link : CVE-2024-39481

CVE.ORG link : CVE-2024-39481


JSON object : View

Products Affected

linux

  • linux_kernel