CVE-2024-24856
5.3
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:N/I:N/A:H
Exploitability: 0.8 / Impact: 4.0
Source: security@openanolis.org (Secondary)
Description
The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a
successful allocation, but the subsequent code directly dereferences the
pointer that receives it, which may lead to null pointer dereference.
To fix this issue, a null pointer check should be added. If it is null,
return exception code AE_NO_MEMORY.
Related CWEs
References (2)
Source: security@openanolis.org
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.