CVE-2024-36959 - CVE House
Back to Database
Status published Unknown CVE-2024-36959

pinctrl: devicetree: fix refcount leak in pinctrl_dt_to_map()

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: pinctrl: devicetree: fix refcount leak in pinctrl_dt_to_map() If we fail to allocate propname buffer, we need to drop the reference count we just took. Because the pinctrl_dt_free_maps() includes the droping operation, here we call it directly.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-36959

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
a988dcd3dd9e691c5ccc3324b209688f3b5453e9, 040f726fecd88121f3b95e70369785ad452dddf9, 777430aa4ddccaa5accec6db90ffc1d47f00d471, 97e5b508e96176f1a73888ed89df396d7041bfcb, 91d5c5060ee24fe8da88cd585bb43b843d2f0dce, aaf552c5d53abe4659176e099575fe870d2e4768, b4d9f55cd38435358bc16d580612bc0d798d7b4c, 5834a3a98cd266ad35a229923c0adbd0addc8d68, 4.19.267, 5.4.225, 5.10.156, 5.15.80, 4.9.334, 4.14.300, 6.0.10, 6.1, 0, 4.19.314, 5.4.276, 5.10.217, 5.15.159, 6.1.91, 6.6.31, 6.8.10, 6.9

Timeline

Official Publish: May 30th, 2024
Last Modified: May 23rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.