CVE-2024-53115: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: avoid null_ptr_deref in vmw_framebuffer_surface_create_handle The 'vmw_user_object_buffer' function may return NULL with incorrect inputs. To avoid possible null pointer dereference, add a check whether the 'bo' is NULL in the vmw_framebuffer_surface_create_handle.
Affected products
- Linux Linux Kernel: from 6.10.4, before 6.11 (fixed in 6.11); from 6.11, before 6.11.10 (fixed in 6.11.10); version 6.12 only
Published 2024-12-02. Last modified 2026-06-17.