CVE-2024-38573
Published: Jun 19, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: cppc_cpufreq: Fix possible null pointer dereference cppc_cpufreq_get_rate() and hisi_cppc_cpufreq_get_rate() can be called from different places with various parameters. So cpufreq_cpu_get() can return null as 'policy' in some circumstances. Fix this bug by adding null return check. Found by Linux Verification Center (linuxtesting.org) with SVACE.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected a28b2bfc099c6b9caa6ef697660408e076a32019 - < 9a185cc5a79ba408e1c73375706630662304f618affected a28b2bfc099c6b9caa6ef697660408e076a32019 - < 769c4f355b7962895205b86ad35617873feef9a5affected a28b2bfc099c6b9caa6ef697660408e076a32019 - < f84b9b25d045e67a7eee5e73f21278c8ab06713caffected a28b2bfc099c6b9caa6ef697660408e076a32019 - < b18daa4ec727c0266de5bfc78e818d168cc4aedfaffected a28b2bfc099c6b9caa6ef697660408e076a32019 - < dfec15222529d22b15e5b0d63572a9e39570cab4+1 more versions |
Linux | Linux | affected 5.11unaffected 0 - < 5.11unaffected 5.15.161 - <= 5.15.*unaffected 6.1.93 - <= 6.1.*unaffected 6.6.33 - <= 6.6.*+3 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now