CVE-2024-40991: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: k3-udma-glue: Fix of_k3_udma_glue_parse_chn_by_id() The of_k3_udma_glue_parse_chn_by_id() helper function erroneously invokes "of_node_put()" on the "udmax_np" device-node passed to it, without having incremented its reference count at any point. Fix it.

Affected products

  • Linux Linux Kernel: from 6.9, before 6.9.7 (fixed in 6.9.7); version 6.10 only

Published 2024-07-12. Last modified 2026-08-04.