CVE-2024-58020: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Add NULL check in mt_input_configured devm_kasprintf() can return a NULL pointer on failure,but this returned value in mt_input_configured() is not checked. Add NULL check in mt_input_configured(), to handle kernel NULL pointer dereference error.

Affected products

  • Linux Linux Kernel: from 4.14.326, before 4.15 (fixed in 4.15); from 4.19.295, before 4.20 (fixed in 4.20); from 5.4.257, before 5.5 (fixed in 5.5); from 5.10.195, before 5.11 (fixed in 5.11); from 5.15.132, before 5.16 (fixed in 5.16); from 6.1.53, before 6.1.129 (fixed in 6.1.129); …

Published 2025-02-27. Last modified 2026-07-14.