CVE-2024-53154
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Dec 24, 2024
Updated: Jan 7, 2025
CWE ID 476
Summary
CVE-2024-53154 is a newly identified vulnerability in the Linux kernel. Specifically, it affects the clk-apple-nco driver, where a NULL pointer dereference error exists in the applnco_probe function. This issue could potentially allow a local attacker to cause a denial of service or gain elevated privileges within the system. To mitigate this vulnerability, a NULL check has been added to the applnco_probe function to prevent such dereferences from occurring.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Linux Kernel
Affected Vendors
- LINUX