Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-36014

18
FAUCET Score

CVE-2024-36014 is a null pointer dereference vulnerability in the Linux kernel's Mali DP display driver (drm/arm/malidp) that affects Linux kernel versions. This flaw, rated Medium severity (CVSS 5.5), could lead to a denial of service (system crash) if a local attacker with low privileges executes a crafted operation. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.19, < 4.19.316CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.278CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.219CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.161CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.93CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.25%
Probability of exploitation in next 30 days
EPSS Percentile
16.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0025 is in the 68th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (2)

codesyspatch availablevia llm_extracted
View patch
esphomepatch availablevia llm_extracted
View patch

Vendor Advisories (3)

codesysllm-codesys-fe85e88fbae25bb9CRITICAL

HP ThinPro 8.1 SP7 Security Updates

Jun 3, 2025
esphomellm-esphome-ed450ce9fd6a7380CRITICAL

HP ThinPro 8.1 SP7 Security Updates

Jun 3, 2025
redhatCVE-2024-36014Moderate

kernel: drm/arm/malidp: fix a possible null pointer dereference

May 29, 2024

References

git.kernel.org / stable/c/335cc45ef2b81b68be63c698b4f867a530bdf7a5
Patch
git.kernel.org / stable/c/3e54d4e95120641216dfe91a6c49f116a9f68490
Patch
git.kernel.org / stable/c/565d9ad7e5a18eb69ed8b66a9e9bb3f45346520c
Patch
git.kernel.org / stable/c/93f76ec1eddce60dbb5885cbc0d7df54adee4639
Patch
git.kernel.org / stable/c/a1f95aede6285dba6dd036d907196f35ae3a11ea
Patch
git.kernel.org / stable/c/a5fa5b40a278a3ca978fed64707bd27614adb1eb
Patch
git.kernel.org / stable/c/b6cc5dd06336ed8bb3a7a1fc5aaf7d5e88bc0818
Patch
git.kernel.org / stable/c/b77620730f614059db2470e8ebab3e725280fc6d
Patch
git.kernel.org / stable/c/e4b52d49383306ef73fd1bd9102538beebb0fe07
Patch
lists.debian.org / debian-lts-announce/2024/06/msg00020.html