Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2024-57799— phy: rockchip: samsung-hdptx: Set drvdata before enabling runtime PM

AI Predicted 5.5 Difficulty: Theoretical EPSS 0.17% · P7

Affected Version Matrix 6

VendorProductVersion RangeStatus
LinuxLinux553be2830c5f33308483e8118de748a2c69fe593< 7061849a4a1752a06944a819dd1f7bfd58df7383affected
553be2830c5f33308483e8118de748a2c69fe593< 9d23e48654620fdccfcc74cc2cef04eaf7353d07affected
6.9affected
< 6.9unaffected
6.12.8≤ 6.12.*unaffected
6.13≤ *unaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2024-57799

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
phy: rockchip: samsung-hdptx: Set drvdata before enabling runtime PM
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: phy: rockchip: samsung-hdptx: Set drvdata before enabling runtime PM In some cases, rk_hdptx_phy_runtime_resume() may be invoked before platform_set_drvdata() is executed in ->probe(), leading to a NULL pointer dereference when using the return of dev_get_drvdata(). Ensure platform_set_drvdata() is called before devm_pm_runtime_enable().
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于PHY rockchip: samsung-hdptx模块在启用运行时PM之前未设置drvdata,可能导致NULL指针解引用。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 553be2830c5f33308483e8118de748a2c69fe593 ~ 7061849a4a1752a06944a819dd1f7bfd58df7383 -
LinuxLinux 6.9 -

II. Public POCs for CVE-2024-57799

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-57799

登录查看更多情报信息。

Patches & Fixes for CVE-2024-57799 (2)

Same Patch Batch · Linux · 2025-01-11 · 67 CVEs total

CVE-2024-474089.8 CRITICALnet/smc: check smcd_v2_ext_offset when receiving proposal msg
CVE-2024-495689.8 CRITICALnet/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg
CVE-2024-578439.8 CRITICALvirtio-net: fix overflow inside virtnet_rq_alloc
CVE-2024-577939.3 CRITICALvirt: tdx-guest: Just leak decrypted memory on unrecoverable errors
CVE-2024-495719.1 CRITICALnet/smc: check iparea_offset and ipv6_prefixes_cnt when receiving proposal msg
CVE-2024-556398.4 HIGHnet: renesas: rswitch: avoid use-after-put for a device tree node
CVE-2024-411497.8 HIGHblock: avoid to reuse `hctx` not removed from cpuhp callback list
CVE-2024-578497.8 HIGHs390/cpum_sf: Handle CPU hotplug remove during sampling
CVE-2024-578507.8 HIGHjffs2: Prevent rtime decompress memory corruption
CVE-2024-523197.8 HIGHmm: use aligned address in clear_gigantic_page()
CVE-2024-578757.8 HIGHblock: RCU protect disk->conv_zones_bitmap
CVE-2024-517297.8 HIGHmm: use aligned address in copy_user_gigantic_page()
CVE-2024-477947.8 HIGHbpf: Prevent tailcall infinite loop caused by freplace
CVE-2024-495697.5 HIGHnvme-rdma: unquiesce admin_q before destroy it
CVE-2024-577917.5 HIGHnet/smc: check return value of sock_recvmsg when draining clc data
CVE-2024-567887.5 HIGHnet: ethernet: oa_tc6: fix tx skb race condition between reference pointers
CVE-2024-577927.3 HIGHpower: supply: gpio-charger: Fix set charge current limits
CVE-2024-578047.3 HIGHscsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs
CVE-2024-563687.1 HIGHring-buffer: Fix overflow in __rb_map_vma
CVE-2024-495737.0 HIGHsched/fair: Fix NEXT_BUDDY

Showing top 20 of 67 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2024-57799

No comments yet


Leave a comment