CVE-2024-35919: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: media: mediatek: vcodec: adding lock to protect encoder context list Add a lock for the ctx_list, to avoid accessing a NULL pointer within the 'vpu_enc_ipi_handler' function when the ctx_list has been deleted due to an unexpected behavior on the SCP IP block.

Affected products

  • Linux Linux Kernel: from 6.6, before 6.6.27 (fixed in 6.6.27); from 6.7, before 6.8.6 (fixed in 6.8.6); version 6.9 only

Published 2024-05-19. Last modified 2026-08-04.