PT-2024-30765 · Linux+4 · Linux Kernel+4

Jesse Zhang

+1

·

Published

2024-05-09

·

Updated

2025-09-29

·

CVE-2024-43906

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified) Linux kernel versions prior to 6.6.50
Description The issue arises when user space sets an invalid ta type, resulting in an empty pointer context. To prevent dereferencing a null pointer, it is necessary to check the pointer context before using it.
Recommendations Update to Linux kernel version 6.6.50 or later to resolve the issue. As a temporary workaround, consider adding checks for the pointer context before using it to prevent dereferencing a null pointer.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-11855
ALT-PU-2024-13979
ALT-PU-2024-14046
AZL-48279
BDU:2025-03095
CVE-2024-43906
MGASA-2024-0309
MGASA-2024-0310
OESA-2024-2124
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3383-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
USN-7154-1
USN-7154-2
USN-7155-1
USN-7156-1
USN-7196-1

Affected Products

Alt Linux
Linuxmint
Linux Kernel
Suse
Ubuntu