Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-26751

17
FAUCET Score

CVE-2024-26751 is a vulnerability in the Linux kernel's ARM EP93xx GPIO driver, affecting Debian and other Linux distributions. It stems from a missing terminator in the gpiod_lookup_table, which can lead to an infinite loop and system crash (oops) if an invalid con_id is provided. Rated Medium severity (CVSS 5.5), this local vulnerability requires low privileges and has a high impact on availability, but no impact on confidentiality or integrity. There is currently no evidence of active exploitation, public exploit code, or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.15, < 4.19.308CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.270CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.211CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.150CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.80CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.24%
Probability of exploitation in next 30 days
EPSS Percentile
15.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0024 is in the 68th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (4)

redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2024-26751Low

kernel: ARM: ep93xx: Add terminator to gpiod_lookup_table

Apr 3, 2024

References

git.kernel.org / stable/c/6abe0895b63c20de06685c8544b908c7e413efa8
Patch
git.kernel.org / stable/c/70d92abbe29692a3de8697ae082c60f2d21ab482
Patch
git.kernel.org / stable/c/786f089086b505372fb3f4f008d57e7845fff0d8
Patch
git.kernel.org / stable/c/97ba7c1f9c0a2401e644760d857b2386aa895997
Patch
git.kernel.org / stable/c/999a8bb70da2946336327b4480824d1691cae1fa
Patch
git.kernel.org / stable/c/9e200a06ae2abb321939693008290af32b33dd6e
Patch
git.kernel.org / stable/c/eec6cbbfa1e8d685cc245cfd5626d0715a127a48
Patch
git.kernel.org / stable/c/fdf87a0dc26d0550c60edc911cda42f9afec3557
Patch
lists.debian.org / debian-lts-announce/2024/06/msg00017.html
Mailing List