CVE-2024-40991

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-40991
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-40991.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-40991
Downstream
Published
2024-07-12T12:37:35Z
Modified
2025-10-17T08:18:01.940449Z
Summary
dmaengine: ti: k3-udma-glue: Fix of_k3_udma_glue_parse_chn_by_id()
Details

In the Linux kernel, the following vulnerability has been resolved:

dmaengine: ti: k3-udma-glue: Fix ofk3udmaglueparsechnby_id()

The ofk3udmaglueparsechnbyid() helper function erroneously invokes "ofnodeput()" on the "udmaxnp" device-node passed to it, without having incremented its reference count at any point. Fix it.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
81a1f90f20af71728f900f245aa69e9425fdef84
Fixed
a5ab5f413d1e4c7ed5f64271b025f0726374509e
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
81a1f90f20af71728f900f245aa69e9425fdef84
Fixed
ba27e9d2207784da748b19170a2e56bd7770bd81

Affected versions

v6.*

v6.10-rc1
v6.8
v6.8-rc2
v6.8-rc3
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.9
v6.9-rc1
v6.9-rc2
v6.9-rc3
v6.9-rc4
v6.9-rc5
v6.9-rc6
v6.9-rc7
v6.9.1
v6.9.2
v6.9.3
v6.9.4
v6.9.5
v6.9.6

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.9.0
Fixed
6.9.7