CVE-2024-23848

In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-adap.c and drivers/media/cec/core/cec-api.c.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

21 Nov 2024, 08:58

Type Values Removed Values Added
References () https://lore.kernel.org/lkml/e9f42704-2f99-4f2c-ade5-f952e5fd53e5%40xs4all.nl/ - Mailing List, Vendor Advisory () https://lore.kernel.org/lkml/e9f42704-2f99-4f2c-ade5-f952e5fd53e5%40xs4all.nl/ - Mailing List, Vendor Advisory

30 Jan 2024, 02:04

Type Values Removed Values Added
CWE CWE-416
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://lore.kernel.org/lkml/e9f42704-2f99-4f2c-ade5-f952e5fd53e5%40xs4all.nl/ - () https://lore.kernel.org/lkml/e9f42704-2f99-4f2c-ade5-f952e5fd53e5%40xs4all.nl/ - Mailing List, Vendor Advisory
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
First Time Linux linux Kernel
Linux

23 Jan 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-23 09:15

Updated : 2024-11-21 08:58


NVD link : CVE-2024-23848

Mitre link : CVE-2024-23848

CVE.ORG link : CVE-2024-23848


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-416

Use After Free