7.8

CVE-2024-57904

iio: adc: at91: call input_free_device() on allocated iio_dev

In the Linux kernel, the following vulnerability has been resolved:

iio: adc: at91: call input_free_device() on allocated iio_dev

Current implementation of at91_ts_register() calls input_free_deivce()
on st->ts_input, however, the err label can be reached before the
allocated iio_dev is stored to st->ts_input. Thus call
input_free_device() on input instead of st->ts_input.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 3.16 < 5.4.290
Linux ≫ Linux Kernel Version >= 5.5 < 5.10.234
Linux ≫ Linux Kernel Version >= 5.11 < 5.15.177
Linux ≫ Linux Kernel Version >= 5.16 < 6.1.125
Linux ≫ Linux Kernel Version >= 6.2 < 6.6.72
Linux ≫ Linux Kernel Version >= 6.7 < 6.12.10
Linux ≫ Linux Kernel Version 6.13 Update rc1
Linux ≫ Linux Kernel Version 6.13 Update rc2
Linux ≫ Linux Kernel Version 6.13 Update rc3
Linux ≫ Linux Kernel Version 6.13 Update rc4
Linux ≫ Linux Kernel Version 6.13 Update rc5
Linux ≫ Linux Kernel Version 6.13 Update rc6
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.24% 0.145
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/028a1ba8e3bae593d701aee4f690ce7c195b67d6
Patch
https://git.kernel.org/stable/c/09e067e3c83e0695d338e8a26916e3c2bc44be02
Patch
https://git.kernel.org/stable/c/25ef52f1c15db67d890b80203a911b9a57b0bf71
Patch
https://git.kernel.org/stable/c/ac8d932e3214c10ec641ad45a253929a596ead62
Patch
https://git.kernel.org/stable/c/b549c90bfe66f704878aa1e57b30ba15dab71935
Patch
https://git.kernel.org/stable/c/d115b7f3ddc03b38bb7e8754601556fe9b4fc034
Patch
https://git.kernel.org/stable/c/de6a73bad1743e9e81ea5a24c178c67429ff510b
Patch
https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html
https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html