CVE-2024-35940

Source
https://cve.org/CVERecord?id=CVE-2024-35940
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35940.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-35940
Downstream
Related
Published
2024-05-19T10:10:45.582Z
Modified
2026-05-28T03:52:48.198252905Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
pstore/zone: Add a null pointer check to the psz_kmsg_read
Details

In the Linux kernel, the following vulnerability has been resolved:

pstore/zone: Add a null pointer check to the pszkmsgread

kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure. Ensure the allocation was successful by checking the pointer validity.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/35xxx/CVE-2024-35940.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d26c3321fe18dc74517dc1f518d584aa33b0a851
Fixed
98e2b97acb875d65bdfc75fc408e67975cef3041
Fixed
0ff96ec22a84d80a18d7ae8ca7eb111c34ee33bb
Fixed
635594cca59f9d7a8e96187600c34facb8bc0682
Fixed
ec7256887d072f98c42cdbef4dcc80ddf84c7a70
Fixed
6f9f2e498eae7897ba5d3e33908917f68ff4abcc
Fixed
98bc7e26e14fbb26a6abf97603d59532475e97f8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35940.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.8.0
Fixed
5.10.215
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.155
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.86
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.27
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.8.6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-35940.json"