Lucene search

K
cvelistLinuxCVELIST:CVE-2024-38551
HistoryJun 19, 2024 - 1:35 p.m.

CVE-2024-38551 ASoC: mediatek: Assign dummy when codec not specified for a DAI link

2024-06-1913:35:23
Linux
www.cve.org
2
asoc
mediatek
dai link
linux kernel
codec
vulnerability
mediatek sound card drivers

0.0004 Low

EPSS

Percentile

15.8%

In the Linux kernel, the following vulnerability has been resolved:

ASoC: mediatek: Assign dummy when codec not specified for a DAI link

MediaTek sound card drivers are checking whether a DAI link is present
and used on a board to assign the correct parameters and this is done
by checking the codec DAI names at probe time.

If no real codec is present, assign the dummy codec to the DAI link
to avoid NULL pointer during string comparison.

CNA Affected

[
  {
    "product": "Linux",
    "vendor": "Linux",
    "defaultStatus": "unaffected",
    "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
    "programFiles": [
      "sound/soc/mediatek/common/mtk-soundcard-driver.c"
    ],
    "versions": [
      {
        "version": "4302187d955f",
        "lessThan": "87b8dca6e06f",
        "status": "affected",
        "versionType": "git"
      },
      {
        "version": "4302187d955f",
        "lessThan": "cbbcabc7f097",
        "status": "affected",
        "versionType": "git"
      },
      {
        "version": "4302187d955f",
        "lessThan": "0c052b1c11d8",
        "status": "affected",
        "versionType": "git"
      },
      {
        "version": "4302187d955f",
        "lessThan": "5f39231888c6",
        "status": "affected",
        "versionType": "git"
      }
    ]
  },
  {
    "product": "Linux",
    "vendor": "Linux",
    "defaultStatus": "affected",
    "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
    "programFiles": [
      "sound/soc/mediatek/common/mtk-soundcard-driver.c"
    ],
    "versions": [
      {
        "version": "6.3",
        "status": "affected"
      },
      {
        "version": "0",
        "lessThan": "6.3",
        "status": "unaffected",
        "versionType": "custom"
      },
      {
        "version": "6.6.33",
        "lessThanOrEqual": "6.6.*",
        "status": "unaffected",
        "versionType": "custom"
      },
      {
        "version": "6.8.12",
        "lessThanOrEqual": "6.8.*",
        "status": "unaffected",
        "versionType": "custom"
      },
      {
        "version": "6.9.3",
        "lessThanOrEqual": "6.9.*",
        "status": "unaffected",
        "versionType": "custom"
      },
      {
        "version": "6.10-rc1",
        "lessThanOrEqual": "*",
        "status": "unaffected",
        "versionType": "original_commit_for_fix"
      }
    ]
  }
]

0.0004 Low

EPSS

Percentile

15.8%

Related for CVELIST:CVE-2024-38551