vulnerability

Debian: CVE-2024-24856: acpica-unix -- security update

Severity
4
CVSS
(AV:L/AC:H/Au:S/C:N/I:N/A:C)
Published
Apr 17, 2024
Added
May 15, 2025
Modified
May 27, 2025

Description

The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a
successful allocation, but the subsequent code directly dereferences the
pointer that receives it, which may lead to null pointer dereference.

To fix this issue, a null pointer check should be added. If it is null,
return exception code AE_NO_MEMORY.

Solution

no-fix-debian-deb-package
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.