---
cve: "CVE-2024-26964"
severity: "LOW"
cvss: 3.1
epss: "23%"
vendor: "Linux"
kev: false
exploited: false
published: "2024-05-01 06:15:12"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-09T22:23:44+02:00"
---

# CVE-2024-26964

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

usb: xhci: Add error handling in xhci_map_urb_for_dma

Currently xhci_map_urb_for_dma() creates a temporary buffer and copies
the SG list to the new linear buffer. But if the kzalloc_node() fails,
then the following sg_pcopy_to_buffer() can lead to crash since it
tries to memcpy to NULL pointer.

So return -ENOMEM if kzalloc returns null pointer.

## Patch verfügbar (OSV)

- Kernel ≥ 5.15.154
- Kernel ≥ 6.1.84
- Kernel ≥ 6.6.24
- Kernel ≥ 6.7.12
- Kernel ≥ 6.8.3

## Referenzen

- <https://git.kernel.org/stable/c/4a49d24fdec0a802aa686a567a3989a9fdf4e5dd>
- <https://git.kernel.org/stable/c/b2c898469dfc388f619c6c972a28466cbb1442ea>
- <https://git.kernel.org/stable/c/620b6cf2f1a270f48d38e6b8ce199c1acb3e90f4>
- <https://git.kernel.org/stable/c/962300a360d24c5be5a188cda48da58a37e4304d>
- <https://git.kernel.org/stable/c/7b6cc33593d7ccfc3011b290849cfa899db46757>
- <https://git.kernel.org/stable/c/be95cc6d71dfd0cba66e3621c65413321b398052>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-26964) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
