CVE-2024-40973

Source
https://cve.org/CVERecord?id=CVE-2024-40973
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-40973.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-40973
Downstream
Related
Published
2024-07-12T12:32:10.763Z
Modified
2026-05-18T05:57:52.809703050Z
Summary
media: mtk-vcodec: potential null pointer deference in SCP
Details

In the Linux kernel, the following vulnerability has been resolved:

media: mtk-vcodec: potential null pointer deference in SCP

The return value of devm_kzalloc() needs to be checked to avoid NULL pointer deference. This is similar to CVE-2022-3113.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/40xxx/CVE-2024-40973.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
590577a4e5257ac3ed72999a94666ad6ba8f24bc
Fixed
eeb62bb4ca22db17f7dfe8fb8472e0442df3d92f
Fixed
f066882293b5ad359e44c4ed24ab1811ffb0b354
Fixed
3a693c7e243b932faee5c1fb728efa73f0abc39b
Fixed
53dbe08504442dc7ba4865c09b3bbf5fe849681b

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-40973.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
6.1.130
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.36
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.9.7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-40973.json"