CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

CVE-2024-49879: drm: omapdrm: Add missing check for alloc_ordered_workqueue

Description

In the Linux kernel, the following vulnerability has been resolved:

drm: omapdrm: Add missing check for alloc_ordered_workqueue

As it may return NULL pointer and cause NULL pointer dereference. Add check
for the return value of alloc_ordered_workqueue.

Classification

CVE ID: CVE-2024-49879

Affected Products

Vendor: Linux

Product: Linux

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.04% (probability of being exploited)

EPSS Percentile: 10.17% (scored less or equal to compared to others)

EPSS Date: 2025-06-02 (when was this score calculated)

Stakeholder-Specific Vulnerability Categorization (SSVC)

SSVC Exploitation: none

SSVC Technical Impact: partial

SSVC Automatable: false

References

https://nvd.nist.gov/vuln/detail/CVE-2024-49879
https://git.kernel.org/stable/c/c17a4f52fa3c3dac2dd6a3c38f2de7342d97d74c
https://git.kernel.org/stable/c/2bda89735199683b03f55b807bd1e31a3857520b
https://git.kernel.org/stable/c/e60b0d3b5aa2e8d934deca9e11215af84e632bc9
https://git.kernel.org/stable/c/f37a1d9e5e22d5489309c3cd2db476dcdcc6530c
https://git.kernel.org/stable/c/b57b53e8ffcdfda87d954fc4187426a54fe75a3d
https://git.kernel.org/stable/c/0d71916694aceb207fefecf62dfa811ec1108bbd
https://git.kernel.org/stable/c/334de68eda2b99892ba869c15cb59bc956fd9f42
https://git.kernel.org/stable/c/e794b7b9b92977365c693760a259f8eef940c536

Timeline