Memory Management Issue in Linux Kernel Affecting Wireless Drivers from Open Source Community
CVE-2024-57989

5.5MEDIUM

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
27 February 2025

What is CVE-2024-57989?

A vulnerability in the Linux kernel related to the mt76 wireless driver has been identified, where the function mt7925_change_vif_links fails to properly check for NULL values returned by devm_kzalloc(). This oversight could lead to potential system instability or unexpected behavior, stressing the importance of robust error checking in the kernel's memory management functions. Users are advised to upgrade their systems to ensure they are protected against potential exploitation of this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 69acd6d910b0c83842bd45c36224d4f8fe59d1d4 < 5872530c2862700070223a2c2ea85642bf2f8875

Linux 69acd6d910b0c83842bd45c36224d4f8fe59d1d4 < 2f709fe755c16b811ba7339ae4c3ee2c72323d3d

Linux 69acd6d910b0c83842bd45c36224d4f8fe59d1d4 < 5cd0bd815c8a48862a296df9b30e0ea0da14acd3

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.