CVE-2024-41098: ata: libata-core: Fix null pointer dereference on error
Published Jul 29, 2024
·Updated
ata: libata-core: Fix null pointer dereference on error
Affected Software
9 affected componentsFixes available
Linux Linux kernel>=2.6.24<6.6.37
Linux Linux kernel>=6.7<6.9.8
debian/linux<=5.10.223-1
5.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
debian/linux-6.1
6.1.129-1~deb11u1
Microsoft cbl2 kernel 5.15.182.1-1
Microsoft azl3 kernel 6.6.43.1-7
Microsoft azl3 kernel 6.6.35.1-5
Microsoft cbl2 kernel 5.15.182.1-1
Microsoft cbl2 kernel 5.15.167.1-1
Remediation
Event History
Jul 29, 2024
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
Description
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Aug 16, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
May 13, 2025
Data Sourced
via Ubuntu·12:34 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-41098?
CVE-2024-41098 has a medium severity rating due to the potential for a null pointer dereference which can lead to application crashes.
2
How do I fix CVE-2024-41098?
To fix CVE-2024-41098, users should update to patched versions of the Linux kernel such as 5.10.226-1 or 6.1.128-1.
3
Which versions of the Linux kernel are affected by CVE-2024-41098?
CVE-2024-41098 affects Linux kernel versions from 2.6.24 up to 6.6.37 and also between 6.7 and 6.9.8.
4
What happens if I do not patch CVE-2024-41098?
Failing to patch CVE-2024-41098 may leave systems vulnerable to crashes due to null pointer dereferences, impacting stability.
5
Is CVE-2024-41098 specific to any operating system?
Yes, CVE-2024-41098 is specific to the Linux operating system as it affects the Linux kernel.