CVE-2024-56572

MEDIUM EPSS 13.8%
Published Dec 27, 20241y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Dec 27, 2024 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: media: platform: allegro-dvt: Fix possible memory leak in allocate_buffers_internal() The buffer in the loop should be released under the exception path, otherwise there may be a memory leak here. To mitigate this, free the buffer when allegro_alloc_buffer fails.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
13.8% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-401

Affected Products 6

VendorProductVersionRange
linuxlinux_kernel*≥5.3  –  <5.4.287
linuxlinux_kernel*≥5.5  –  <5.10.231
linuxlinux_kernel*≥5.11  –  <5.15.174
linuxlinux_kernel*≥5.16  –  <6.1.120
linuxlinux_kernel*≥6.2  –  <6.6.64
linuxlinux_kernel*≥6.7  –  <6.12.4

References 8

  • git.kernel.org https://git.kernel.org/stable/c/0f514068fbc5d4d189c817adc7c4e32cffdc2e47
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/17e5613666209be4e5be1f1894f1a6014a8a0658
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/64f72a738864b506ab50b4a6cb3ce3c3e04b71af
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6712a28a4f923ffdf51cff267ad05a634ee1babc
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/74a65313578b35e1239966adfa7ac2bdd60caf00
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/891b5790bee8fc6ddba17874dd87a646128d0b99
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cf642904be39ae0d441dbdfa8f485e0a46260be4
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/0f514068fbc5d4d189c817adc7c4e32cffdc2e47
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/17e5613666209be4e5be1f1894f1a6014a8a0658
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/64f72a738864b506ab50b4a6cb3ce3c3e04b71af
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6712a28a4f923ffdf51cff267ad05a634ee1babc
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/74a65313578b35e1239966adfa7ac2bdd60caf00
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/891b5790bee8fc6ddba17874dd87a646128d0b99
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/cf642904be39ae0d441dbdfa8f485e0a46260be4
    Patch