CVE-2024-56575
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Dec 27, 2024
Updated: Jan 31, 2025
CWE ID 476
Summary
CVE-2024-56575: A vulnerability was identified in the Linux kernel's imx-jpeg driver. The issue lies in the failure to properly suspend power suppliers before detaching them, which can lead to a kernel panic. The detachment process requires synchronization with power management callbacks, and the lack of such synchronization can result in a NULL pointer dereference and system instability. This vulnerability was observed on a NXP i.MX95 19X19 board running kernel version 6.6.36.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.