Executive Summary

Informations
Name CVE-2024-53188 First vendor Publication 2024-12-27
Vendor Cve Last vendor Modification 2025-01-15

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Overall CVSS Score 5.5
Base Score 5.5 Environmental Score 5.5
impact SubScore 3.6 Temporal Score 5.5
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

wifi: ath12k: fix crash when unbinding

If there is an error during some initialization related to firmware, the function ath12k_dp_cc_cleanup is called to release resources. However this is released again when the device is unbinded (ath12k_pci), and we get: BUG: kernel NULL pointer dereference, address: 0000000000000020 at RIP: 0010:ath12k_dp_cc_cleanup.part.0+0xb6/0x500 [ath12k] Call Trace: ath12k_dp_cc_cleanup ath12k_dp_free ath12k_core_deinit ath12k_pci_remove ...

The issue is always reproducible from a VM because the MSI addressing initialization is failing.

In order to fix the issue, just set to NULL the released structure in ath12k_dp_cc_cleanup at the end.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-53188

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-476 NULL Pointer Dereference

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3700

Sources (Detail)

https://git.kernel.org/stable/c/1304446f67863385dc4c914b6e0194f6664ee764
https://git.kernel.org/stable/c/2eec88c0fa63f8ad35704a8c9df0b5bd8694fcda
https://git.kernel.org/stable/c/488d2959c28621e52b3cce118a813a4bc18bb3d1
https://git.kernel.org/stable/c/81da9c0854545c3188ca2a09afe7cb65f9c012b5
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
Date Informations
2025-06-26 02:37:54
  • Multiple Updates
2025-06-25 12:36:05
  • Multiple Updates
2025-06-24 02:42:33
  • Multiple Updates
2025-05-27 02:47:38
  • Multiple Updates
2025-03-29 03:43:49
  • Multiple Updates
2025-03-28 13:47:16
  • Multiple Updates
2025-03-28 03:21:35
  • Multiple Updates
2025-03-19 03:16:37
  • Multiple Updates
2025-03-18 03:29:36
  • Multiple Updates
2025-03-14 03:16:45
  • Multiple Updates
2025-03-06 14:13:18
  • Multiple Updates
2025-02-22 03:26:50
  • Multiple Updates
2025-01-15 21:20:44
  • Multiple Updates
2024-12-27 17:20:29
  • First insertion