CVE-2024-56593
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Dec 27, 2024
Updated: Jan 8, 2025
CWE ID 476
Summary
CVE-2024-56593 is a Linux kernel vulnerability affecting the brcmfmac driver. A NULL pointer dereference issue was identified in the function brcmf_sdiod_sglist_rw(). This bug occurs when a high 'sd_sgentry_align' value is applied in conjunction with a large number of queued SKBs, leading to a lack of sufficient sg entries. The patch resolves this issue by increasing the size of the pre-allocated sgtable to handle the worst-case scenario, requiring only additional 464 bytes of memory.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.