CVE-2024-58012

In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda-dai: Ensure DAI widget is valid during params Each cpu DAI should associate with a widget. However, the topology might not create the right number of DAI widgets for aggregated amps. And it will cause NULL pointer deference. Check that the DAI widget associated with the CPU DAI is valid to prevent NULL pointer deference due to missing DAI widgets in topologies with aggregated amps.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

06 Mar 2025, 12:21

Type Values Removed Values Added
First Time Linux linux Kernel
Linux
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: ASoC: SOF: Intel: hda-dai: Asegúrese de que el widget DAI sea válido durante los parámetros Cada DAI de la CPU debe asociarse con un widget. Sin embargo, la topología podría no crear la cantidad correcta de widgets DAI para amplificadores agregados. Y provocará una deferencia de puntero NULL. Verifique que el widget DAI asociado con el DAI de la CPU sea válido para evitar la deferencia de puntero NULL debido a la falta de widgets DAI en topologías con amplificadores agregados.
References () https://git.kernel.org/stable/c/569922b82ca660f8b24e705f6cf674e6b1f99cc7 - () https://git.kernel.org/stable/c/569922b82ca660f8b24e705f6cf674e6b1f99cc7 - Patch
References () https://git.kernel.org/stable/c/789a2fbf0900982788408d3b0034e0e3f914fb3b - () https://git.kernel.org/stable/c/789a2fbf0900982788408d3b0034e0e3f914fb3b - Patch
References () https://git.kernel.org/stable/c/e012a77e4d7632cf615ba9625b1600ed8985c3b5 - () https://git.kernel.org/stable/c/e012a77e4d7632cf615ba9625b1600ed8985c3b5 - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-476
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5

27 Feb 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-27 03:15

Updated : 2025-03-06 12:21


NVD link : CVE-2024-58012

Mitre link : CVE-2024-58012

CVE.ORG link : CVE-2024-58012


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference