目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2024-42101— Linux kernel 安全漏洞

AI Predicted 4.4 Difficulty: Easy EPSS 0.26% · P18

Affected Version Matrix 18

ベンダープロダクトVersion Rangeステータス
LinuxLinux6ee738610f41b59733f63718f0bdbcba7d3a3f12< 9baf60323efa992b7c915094529f0a1882c34e7eaffected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< e36364f5f3785d054a94e57e971385284886d41aaffected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< 274cba8d2d1b48c72d8bd90e76c9e2dc1aa0a81daffected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< f48dd3f19614022f2e1b794fbd169d2b4c398c07affected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< 1f32535238493008587a8c5cb17eb2ca097592efaffected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< 744b229f09134ccd091427a6f9ea6d97302cfdd9affected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< 7db5411c5d0bd9c29b8c2ad93c36b5c16ea46c9eaffected
6ee738610f41b59733f63718f0bdbcba7d3a3f12< 80bec6825b19d95ccdfd3393cf8ec15ff2a749b4affected
… +10 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2024-42101の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
drm/nouveau: fix null pointer dereference in nouveau_connector_get_modes
ソース: NVD (National Vulnerability Database)
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix null pointer dereference in nouveau_connector_get_modes In nouveau_connector_get_modes(), the return value of drm_mode_duplicate() is assigned to mode, which will lead to a possible NULL pointer dereference on failure of drm_mode_duplicate(). Add a check to avoid npd.
ソース: NVD (National Vulnerability Database)
CVSS情報
N/A
ソース: NVD (National Vulnerability Database)
脆弱性タイプ
N/A
ソース: NVD (National Vulnerability Database)
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于drm/nouveau模块中在nouveau_connector_get_modes()中,drm_mode_duplicate()的返回值被分配给mode,在失败时可能导致空指针取消引用。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux 6ee738610f41b59733f63718f0bdbcba7d3a3f12 ~ 9baf60323efa992b7c915094529f0a1882c34e7e -
LinuxLinux 2.6.33 -

II. CVE-2024-42101の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2024-42101のインテリジェンス情報

登录查看更多情报信息。

CVE-2024-42101 其他参考 (7)

Same Patch Batch · Linux · 2024-07-30 · 70 CVEs total

CVE-2024-42146drm/xe: Add outer runtime_pm protection to xe_live_ktest@xe_dma_buf
CVE-2024-42227drm/amd/display: Fix overlapping copy within dml_core_mode_programming
CVE-2024-42225wifi: mt76: replace skb_put with skb_put_zero
CVE-2024-42153i2c: pnx: Fix potential deadlock warning from del_timer_sync() call in isr
CVE-2024-42152nvmet: fix a possible leak when destroy a ctrl during qp establishment
CVE-2024-42151bpf: mark bpf_dummy_struct_ops.test_1 parameter as nullable
CVE-2024-42150net: txgbe: remove separate irq request for MSI and INTx
CVE-2024-42149fs: don't misleadingly warn during thaw operations
CVE-2024-42148bnx2x: Fix multiple UBSAN array-index-out-of-bounds
CVE-2024-42147crypto: hisilicon/debugfs - Fix debugfs uninit process issue
CVE-2024-42154tcp_metrics: validate source addr length
CVE-2024-42145IB/core: Implement a limit on UMAD receive List
CVE-2024-42144thermal/drivers/mediatek/lvts_thermal: Check NULL ptr on lvts_data
CVE-2024-42142net/mlx5: E-switch, Create ingress ACL when needed
CVE-2024-42141Bluetooth: ISO: Check socket flag instead of hcon
CVE-2024-42140riscv: kexec: Avoid deadlock in kexec crash path
CVE-2024-42138mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI file
CVE-2024-42139ice: Fix improper extts handling
CVE-2024-42137Bluetooth: qca: Fix BT enable failure again for QCA6390 after warm reboot
CVE-2024-42136cdrom: rearrange last_media_change check to avoid unintentional overflow

Showing 20 of 70 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2024-42101へのコメント

まだコメントはありません


コメントを残す