Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j5hc-79cm-3qpw

Опубликовано: 17 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code directly dereferences the pointer that receives it, which may lead to null pointer dereference.

To fix this issue, a null pointer check should be added. If it is null, return exception code AE_NO_MEMORY.

The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code directly dereferences the pointer that receives it, which may lead to null pointer dereference.

To fix this issue, a null pointer check should be added. If it is null, return exception code AE_NO_MEMORY.

EPSS

Процентиль: 12%
0.00039
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 2 года назад

The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code directly dereferences the pointer that receives it, which may lead to null pointer dereference. To fix this issue, a null pointer check should be added. If it is null, return exception code AE_NO_MEMORY.

CVSS3: 5.3
nvd
почти 2 года назад

The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code directly dereferences the pointer that receives it, which may lead to null pointer dereference. To fix this issue, a null pointer check should be added. If it is null, return exception code AE_NO_MEMORY.

msrc
2 месяца назад

NULL pointer deference in acpi_db_convert_to_package of Linux acpi module

CVSS3: 5.3
debian
почти 2 года назад

The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee ...

CVSS3: 5.3
fstec
почти 3 года назад

Уязвимость функции acpi_db_display_objects() модуля drivers/acpi/acpica/dbconvert.c - драйвера поддержки ACPI (расширенный интерфейс конфигурации и питания) ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 12%
0.00039
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-476