CVE-2024-53154

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Dec 24, 2024
Updated: Jan 7, 2025
CWE ID 476

Summary

CVE-2024-53154 is a newly identified vulnerability in the Linux kernel. Specifically, it affects the clk-apple-nco driver, where a NULL pointer dereference error exists in the applnco_probe function. This issue could potentially allow a local attacker to cause a denial of service or gain elevated privileges within the system. To mitigate this vulnerability, a NULL check has been added to the applnco_probe function to prevent such dereferences from occurring.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share