CVE-2024-42089 - Linux FSL ASOC Card Null Pointer Dereference Vulnerability

CVE ID : CVE-2024-42089 Published : July 29, 2024, 5:15 p.m. | 1 hour, 14 minutes ago Description : In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl-asoc-card: set priv->pdev before using it priv->pdev pointer was set after being used in fsl_asoc_card_audmux_init(). Move this assignment at the start of the probe function, so sub-functions can correctly use pdev through priv. fsl_asoc_card_audmux_init() dereferences priv->pdev to get access to the dev struct, used with dev_err macros. As priv is zero-initialised, there would be a NULL pointer dereference. Note that if priv->dev is dereferenced before assignment but never used, for example if there is no error to be printed, the driver won't crash probably due to compiler optimisations. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Jul 29, 2024 - 20:30
 0  2
CVE-2024-42089 - Linux FSL ASOC Card Null Pointer Dereference Vulnerability
CVE ID : CVE-2024-42089
Published : July 29, 2024, 5:15 p.m. | 1 hour, 14 minutes ago
Description : In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl-asoc-card: set priv->pdev before using it priv->pdev pointer was set after being used in fsl_asoc_card_audmux_init(). Move this assignment at the start of the probe function, so sub-functions can correctly use pdev through priv. fsl_asoc_card_audmux_init() dereferences priv->pdev to get access to the dev struct, used with dev_err macros. As priv is zero-initialised, there would be a NULL pointer dereference. Note that if priv->dev is dereferenced before assignment but never used, for example if there is no error to be printed, the driver won't crash probably due to compiler optimisations.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...