CVE-2024-56767: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: dmaengine: at_xdmac: avoid null_prt_deref in at_xdmac_prep_dma_memset The at_xdmac_memset_create_desc may return NULL, which will lead to a null pointer dereference. For example, the len input is error, or the atchan->free_descs_list is empty and memory is exhausted. Therefore, add check to avoid this.

Affected products

  • Linux Linux Kernel: from 4.2, before 6.1.123 (fixed in 6.1.123); from 6.2, before 6.6.69 (fixed in 6.6.69); from 6.7, before 6.12.8 (fixed in 6.12.8); version 6.13 only

Published 2025-01-06. Last modified 2026-06-17.