Lucene search

K
vulnrichmentLinuxVULNRICHMENT:CVE-2024-39475
HistoryJul 05, 2024 - 6:55 a.m.

CVE-2024-39475 fbdev: savage: Handle err return when savagefb_check_var failed

2024-07-0506:55:05
Linux
github.com
2
linux kernel
fbdev
savage
divide-by-zero

AI Score

6.7

Confidence

Low

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

In the Linux kernel, the following vulnerability has been resolved:

fbdev: savage: Handle err return when savagefb_check_var failed

The commit 04e5eac8f3ab(“fbdev: savage: Error out if pixclock equals zero”)
checks the value of pixclock to avoid divide-by-zero error. However
the function savagefb_probe doesn’t handle the error return of
savagefb_check_var. When pixclock is 0, it will cause divide-by-zero error.

AI Score

6.7

Confidence

Low

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial