---
cve: "CVE-2024-26975"
severity: "LOW"
cvss: 3.1
epss: "23%"
vendor: "Linux"
kev: false
exploited: false
published: "2024-05-01 06:15:14"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T16:02:20+02:00"
---

# CVE-2024-26975

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

powercap: intel_rapl: Fix a NULL pointer dereference

A NULL pointer dereference is triggered when probing the MMIO RAPL
driver on platforms with CPU ID not listed in intel_rapl_common CPU
model list.

This is because the intel_rapl_common module still probes on such
platforms even if 'defaults_msr' is not set after commit 1488ac990ac8
("powercap: intel_rapl: Allow probing without CPUID match"). Thus the
MMIO RAPL rp->priv->defaults is NULL when registering to RAPL framework.

Fix the problem by adding sanity check to ensure rp->priv->rapl_defaults
is always valid.

## Patch verfügbar (OSV)

- Kernel ≥ 6.6.24
- Kernel ≥ 6.7.12
- Kernel ≥ 6.8.3

## Referenzen

- <https://git.kernel.org/stable/c/0641908b906a133f1494c312a71f9fecbe2b6c78>
- <https://git.kernel.org/stable/c/9b254feb249981b66ccdb1dae54e757789a15ba1>
- <https://git.kernel.org/stable/c/2f73cf2ae5e0f4e629db5be3a4380ff7807148e6>
- <https://git.kernel.org/stable/c/2d1f5006ff95770da502f8cee2a224a1ff83866e>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-26975) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
