VYPR
Medium severity5.5NVD Advisory· Published Jun 19, 2024· Updated Jun 17, 2026

CVE-2024-38584

CVE-2024-38584

Description

In the Linux kernel, the following vulnerability has been resolved:

net: ti: icssg_prueth: Fix NULL pointer dereference in prueth_probe()

In the prueth_probe() function, if one of the calls to emac_phy_connect() fails due to of_phy_connect() returning NULL, then the subsequent call to phy_attached_info() will dereference a NULL pointer.

Check the return code of emac_phy_connect and fail cleanly if there is an error.

Affected products

4
  • Linux/Kernel3 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=6.6,<6.6.33
    • (no CPE)range: 6.6
    • (no CPE)
  • osv-coords
    Range: >= 6.6.0, < 6.6.33

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.