CVE-2024-39481: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: media: mc: Fix graph walk in media_pipeline_start The graph walk tries to follow all links, even if they are not between pads. This causes a crash with, e.g. a MEDIA_LNK_FL_ANCILLARY_LINK link. Fix this by allowing the walk to proceed only for MEDIA_LNK_FL_DATA_LINK links.
Affected products
- Linux Linux Kernel: from 6.1, before 6.1.94 (fixed in 6.1.94); from 6.6, before 6.6.34 (fixed in 6.6.34); from 6.9, before 6.9.5 (fixed in 6.9.5)
Published 2024-07-05. Last modified 2026-08-04.