CVE-2024-56546
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/12/2024
Last modified:
03/11/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
drivers: soc: xilinx: add the missing kfree in xlnx_add_cb_for_suspend()<br />
<br />
If we fail to allocate memory for cb_data by kmalloc, the memory<br />
allocation for eve_data is never freed, add the missing kfree()<br />
in the error handling path.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.19 (including) | 6.1.120 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (including) | 6.6.64 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.7 (including) | 6.11.11 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.12 (including) | 6.12.2 (excluding) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/272168927f38bda46f6c1ed5f40de97689e7a5d2
- https://git.kernel.org/stable/c/44ed4f90a97ff6f339e50ac01db71544e0990efc
- https://git.kernel.org/stable/c/584d420771e1ad2bb74e19a19da8ae0fee0a6e1f
- https://git.kernel.org/stable/c/5a3bda42394ff137eb2d3d3d20d2956a8c6e9237
- https://git.kernel.org/stable/c/882d7afaa4b82c20a7be7a3a039532a80ebacd23
- https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html



