Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2024-46856

Description

In the Linux kernel, the following vulnerability has been resolved:net: phy: dp83822: Fix NULL pointer dereference on DP83825 devicesThe probe() function is only used for DP83822 and DP83826 PHY,leaving the private data pointer uninitialized for the DP83825 modelswhich causes a NULL pointer dereference in the recently introduced/changedfunctions dp8382x_config_init() and dp83822_set_wol().Add the dp8382x_probe() function, so all PHY models will have a validprivate data pointer to fix this issue and also prevent similar issuesin the future.

POC

Reference

No PoCs from references.

Github

- https://github.com/fkie-cad/nvd-json-data-feeds