In the Linux kernel, the following vulnerability has been resolved:
greybus: lights: check return of get_channel_from_mode
If channel for the given node is not found we return null from
get_channel_from_mode. Make sure we validate the return pointer
before using it in two of the missing places.
This was originally reported in [0]:
Found by Linux Verification Center (linuxtesting.org) with SVACE.
[0] https://lore.kernel.org/all/20240301190425.120605-1-m.lobanov@rosalinux.ru
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 17 Sep 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-476 | |
| CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| Metrics | cvssV3_1 
 | cvssV3_1 
 | 
Wed, 11 Sep 2024 13:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Linux
Published: 2024-06-21T10:18:25.560Z
Updated: 2025-05-04T09:15:55.660Z
Reserved: 2024-06-18T19:36:34.948Z
Link: CVE-2024-38637
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T04:12:26.007Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-06-21T11:15:12.400
Modified: 2025-09-17T17:00:22.723
Link: CVE-2024-38637
 Redhat
                        Redhat