{"schema_version":"1.9.0","id":"CVE-2024-43823","published":"2024-08-17T09:21:43.843Z","modified":"2026-08-12T03:51:37.489368689Z","related":["SUSE-SU-2024:3190-1","SUSE-SU-2024:3194-1","SUSE-SU-2024:3195-1","SUSE-SU-2024:3209-1","SUSE-SU-2024:3383-1","SUSE-SU-2024:3483-1","SUSE-SU-2025:20044-1","SUSE-SU-2025:20047-1"],"summary":"PCI: keystone: Fix NULL pointer dereference in case of DT error in ks_pcie_setup_rc_app_regs()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nPCI: keystone: Fix NULL pointer dereference in case of DT error in ks_pcie_setup_rc_app_regs()\n\nIf IORESOURCE_MEM is not provided in Device Tree due to\nany error, resource_list_first_type() will return NULL and\npci_parse_request_of_pci_ranges() will just emit a warning.\n\nThis will cause a NULL pointer dereference. Fix this bug by adding NULL\nreturn check.\n\nFound by Linux Verification Center (linuxtesting.org) with SVACE.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"0f71c60ffd26943fa9646aa73ad7889ace116ce2"},{"fixed":"bbba48ad67c53feea05936ea1e029dcca8057506"},{"fixed":"0a6f1b5fe8ef8268aaa069035639968ceeea0a23"},{"fixed":"dbcdd1863ba2ec9b76ec131df25d797709e05597"},{"fixed":"a231707a91f323af1e5d9f1722055ec2fc1c7775"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-43823.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"5.10.0"},{"fixed":"6.1.103"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.44"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.10.3"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-43823.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/0a6f1b5fe8ef8268aaa069035639968ceeea0a23"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a231707a91f323af1e5d9f1722055ec2fc1c7775"},{"type":"WEB","url":"https://git.kernel.org/stable/c/bbba48ad67c53feea05936ea1e029dcca8057506"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dbcdd1863ba2ec9b76ec131df25d797709e05597"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/43xxx/CVE-2024-43823.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-43823"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/43xxx/CVE-2024-43823.json"}}