VulnerabilityAnalyzed
CVE-2024-35829
In the Linux kernel, the following vulnerability has been resolved: drm/lima: fix a memleak in lima_heap_alloc When lima_vm_map_bo fails, the resources need to be deallocated, or there will be memleaks.
MEDIUM 5.5EPSS 0.21%
Does this matter?
Lower severity and a low EPSS score (0.21%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: drm/lima: fix a memleak in lima_heap_alloc When lima_vm_map_bo fails, the resources need to be deallocated, or there will be memleaks.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.21% probability · 12th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-401
- Affected
- debian/debian linux · linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/04ae3eb470e52a3c41babe85ff8cee195e4dcbeaPatch
- https://git.kernel.org/stable/c/4ab14eccf5578af1dd5668a5f2d771df27683cabPatch
- https://git.kernel.org/stable/c/746606d37d662c70ae1379fc658ee9c65f06880fPatch
- https://git.kernel.org/stable/c/8e25c0ee5665e8a768b8e21445db1f86e9156eb7Patch
- https://git.kernel.org/stable/c/ec6bb037e4a35fcbb5cd7bc78242d034ed893fcdPatch
- https://git.kernel.org/stable/c/f2e80ac9344aebbff576453d5c0290b332e187edPatch
- https://git.kernel.org/stable/c/f6d51a91b41704704e395de6839c667b0f810bbfPatch
- https://git.kernel.org/stable/c/04ae3eb470e52a3c41babe85ff8cee195e4dcbeaPatch
- https://git.kernel.org/stable/c/4ab14eccf5578af1dd5668a5f2d771df27683cabPatch
- https://git.kernel.org/stable/c/746606d37d662c70ae1379fc658ee9c65f06880fPatch
- https://git.kernel.org/stable/c/8e25c0ee5665e8a768b8e21445db1f86e9156eb7Patch
- https://git.kernel.org/stable/c/ec6bb037e4a35fcbb5cd7bc78242d034ed893fcdPatch
- https://git.kernel.org/stable/c/f2e80ac9344aebbff576453d5c0290b332e187edPatch
- https://git.kernel.org/stable/c/f6d51a91b41704704e395de6839c667b0f810bbfPatch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00017.htmlMailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.