net: ethtool: fix the error condition in ethtool_get_phy_stats_ethtool()
Published Jul 12, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.23%
Description
Clang static checker (scan-build) warning: net/ethtool/ioctl.c:line 2233, column 2 Called function pointer is null (null dereference).
Return '-EOPNOTSUPP' when 'ops->get_ethtool_phy_stats' is NULL to fix this typo error.
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 6.2StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<6.2
- Version 6.10StatusunaffectedConstraints<=*
- Version 6.6.35StatusunaffectedConstraints<=6.6.*
- Version 6.9.6StatusunaffectedConstraints<=6.9.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
- ≥ 6.2 · < 6.6.35
- ≥ 6.7 · < 6.9.6
- 6.10
- 6.10
No data.
Red Hat Enterprise Linux 9
kernel-0:5.14.0-427.31.1.el9_4
Fixed · RHSA-2024:5363
Red Hat Enterprise Linux 9
kernel-0:5.14.0-427.31.1.el9_4
Fixed · RHSA-2024:5363
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-427.31.1.el9_4 | Fixed | RHSA-2024:5363 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-427.31.1.el9_4 | Fixed | RHSA-2024:5363 |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
References (12)
- https://access.redhat.com/security/cve/CVE-2024-40928 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2297512 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-38739 Advisory
- https://git.kernel.org/stable/c/0dcc53abf58d572d34c5313de85f607cd33fc691 Patch
- https://git.kernel.org/stable/c/25504f7fe60058b2a9553a9e424fb7dd9683843e
- https://git.kernel.org/stable/c/6548d543a27449a1a3d8079925de93f5764d6f22 Patch
- https://git.kernel.org/stable/c/92196be82a4eb61813833dc62876fd198ae51ab1 Patch
- https://git.kernel.org/stable/c/c3ba0557ab2ef15a3663e2fb9b1a3d628a8c3daa
- https://git.kernel.org/stable/c/f9e57e7ca77393b5b7072800370370b02eaad0f8
- https://lore.kernel.org/linux-cve-announce/2024071215-CVE-2024-40928-0331@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2024-40928
- https://www.cve.org/CVERecord?id=CVE-2024-40928
Change history (0)
No recorded changes yet.