摘要:
In the Linux kernel, the following vulnerability has been resolved:
wifi: brcm80211: handle pmk_op allocation failure
The kzalloc() in brcmf_pmksa_v3_op() will return null if the
physical memory has run out. As a result, if we dereference
the null value, the null pointer dereference bug will happen.
Return -ENOMEM from brcmf_pmksa_v3_op() if kzalloc() fails
for pmk_op.
安全等级: Low
公告ID: KylinSec-SA-2024-2149
发布日期: 2024年5月28日
关联CVE: CVE-2024-27048
In the Linux kernel, the following vulnerability has been resolved:
wifi: brcm80211: handle pmk_op allocation failure
The kzalloc() in brcmf_pmksa_v3_op() will return null if the
physical memory has run out. As a result, if we dereference
the null value, the null pointer dereference bug will happen.
Return -ENOMEM from brcmf_pmksa_v3_op() if kzalloc() fails
for pmk_op.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2024-27048 | KY3.4-4A | kernel | Unaffected |
CVE-2024-27048 | KY3.4-5 | kernel | Unaffected |
CVE-2024-27048 | KY3.5.1 | kernel | Unaffected |
CVE-2024-27048 | KY3.5.3 | kernel | Unaffected |
CVE-2024-27048 | V6 | kernel | Unaffected |