CVE-2024-57989: wifi: mt76: mt7925: fix NULL deref check in mt7925_change_vif_links
Published Feb 27, 2025
·Updated
In the Linux kernel, the following vulnerability has been resolved:
wifi: mt76: mt7925: fix NULL deref check in mt7925changeviflinks
In mt7925changeviflinks() devmkzalloc() may return NULL but this returned value is not checked.
Affected Software
7 affected components
Linux Linux kernel
Linux Linux kernel>=6.11<6.12.13
Linux Linux kernel>=6.13<6.13.2
IBM Verify Identity Access<=11.0 - 11.0.2
IBM Security Verify Access<=10.0 - 10.0.9.1
IBM Verify Identity Access Container<=11.0 - 11.0.2
IBM Security Verify Access Container<=10.0 - 10.0.9.1
Event History
Feb 27, 2025
CVE Published
via MITRE·02:07 AM
Data Sourced
via MITRE·02:07 AM
Description
Data Sourced
via NVD·02:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Data Sourced
via Red Hat·03:03 AM
DescriptionSeverityAffected Software
Jul 8, 2026
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-57989?
CVE-2024-57989 is a moderate severity vulnerability in the Linux kernel affecting the mt7925 driver.
2
How do I fix CVE-2024-57989?
To fix CVE-2024-57989, update your Linux kernel to version 6.13.2 or later, or version 6.12.13 or later.
3
Which systems are affected by CVE-2024-57989?
CVE-2024-57989 affects various versions of the Linux kernel, specifically versions between 6.11 and 6.12.13 and 6.13 and 6.13.2.
4
What does CVE-2024-57989 exploit?
CVE-2024-57989 exploits a potential NULL dereference in the mt7925 driver within the Linux kernel.
5
When was CVE-2024-57989 disclosed?
CVE-2024-57989 was disclosed alongside the fix in a patch release for the Linux kernel.