CVE-2024-35919

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-35919
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35919.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-35919
Downstream
Published
2024-05-19T10:10:31Z
Modified
2025-10-09T08:51:53.887493Z
Severity
  • 7.0 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
media: mediatek: vcodec: adding lock to protect encoder context list
Details

In the Linux kernel, the following vulnerability has been resolved:

media: mediatek: vcodec: adding lock to protect encoder context list

Add a lock for the ctxlist, to avoid accessing a NULL pointer within the 'vpuencipihandler' function when the ctx_list has been deleted due to an unexpected behavior on the SCP IP block.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1972e32431ed14682909ad568c6fd660572ae6ab
Fixed
41671f0c0182b2bae74ca7e3b0f155559e3e2fc5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1972e32431ed14682909ad568c6fd660572ae6ab
Fixed
51c84a8aac6e3b59af2b0e92ba63cabe2e641a2d
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1972e32431ed14682909ad568c6fd660572ae6ab
Fixed
afaaf3a0f647a24a7bf6a2145d8ade37baaf75ad

Affected versions

v6.*

v6.5
v6.5-rc2
v6.5-rc3
v6.5-rc4
v6.5-rc5
v6.5-rc6
v6.5-rc7
v6.6
v6.6-rc1
v6.6-rc2
v6.6-rc3
v6.6-rc4
v6.6-rc5
v6.6-rc6
v6.6-rc7
v6.6.1
v6.6.10
v6.6.11
v6.6.12
v6.6.13
v6.6.14
v6.6.15
v6.6.16
v6.6.17
v6.6.18
v6.6.19
v6.6.2
v6.6.20
v6.6.21
v6.6.22
v6.6.23
v6.6.24
v6.6.25
v6.6.26
v6.6.3
v6.6.4
v6.6.5
v6.6.6
v6.6.7
v6.6.8
v6.6.9
v6.7
v6.7-rc1
v6.7-rc2
v6.7-rc3
v6.7-rc4
v6.7-rc5
v6.7-rc6
v6.7-rc7
v6.7-rc8
v6.8
v6.8-rc1
v6.8-rc2
v6.8-rc3
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.8.1
v6.8.2
v6.8.3
v6.8.4
v6.8.5
v6.9-rc1

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.6.0
Fixed
6.6.27
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.8.6

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
1972e32431ed
Fixed
41671f0c0182
Type
ECOSYSTEM
Events
Introduced
1972e32431ed
Fixed
51c84a8aac6e
Type
ECOSYSTEM
Events
Introduced
1972e32431ed
Fixed
afaaf3a0f647
Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Last affected
6.6
Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.6*
Type
ECOSYSTEM
Events
Introduced
6.6.27
Last affected
6.6*
Type
ECOSYSTEM
Events
Introduced
6.8.6
Last affected
6.8*
Type
ECOSYSTEM
Events
Introduced
6.9
Last affected
*