Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix memory leak in hci_req_sync_complete() In 'hci_req_sync_complete()', always free the previous sync request state before assigning reference to a new one.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 4.1, < 4.19.313 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/45d355a926ab40f3ae7bc0b0a00cb0e3e8a5a810Patch
- https://git.kernel.org/stable/c/4beab84fbb50df3be1d8f8a976e6fe882ca65cb2Patch
- https://git.kernel.org/stable/c/66fab1e120b39f8f47a94186ddee36006fc02ca8Patch
- https://git.kernel.org/stable/c/75193678cce993aa959e7764b6df2f599886dd06Patch
- https://git.kernel.org/stable/c/8478394f76c748862ef179a16f651f752bdafaf0Patch
- https://git.kernel.org/stable/c/89a32741f4217856066c198a4a7267bcdd1edd67Patch
- https://git.kernel.org/stable/c/9ab5e44b9bac946bd49fd63264a08cd1ea494e76Patch
- https://git.kernel.org/stable/c/e4cb8382fff6706436b66eafd9c0ee857ff0a9f5Patch
- https://git.kernel.org/stable/c/45d355a926ab40f3ae7bc0b0a00cb0e3e8a5a810Patch
- https://git.kernel.org/stable/c/4beab84fbb50df3be1d8f8a976e6fe882ca65cb2Patch
- https://git.kernel.org/stable/c/66fab1e120b39f8f47a94186ddee36006fc02ca8Patch
- https://git.kernel.org/stable/c/75193678cce993aa959e7764b6df2f599886dd06Patch
- https://git.kernel.org/stable/c/8478394f76c748862ef179a16f651f752bdafaf0Patch
- https://git.kernel.org/stable/c/89a32741f4217856066c198a4a7267bcdd1edd67Patch
- https://git.kernel.org/stable/c/9ab5e44b9bac946bd49fd63264a08cd1ea494e76Patch
FAQ
What is CVE-2024-35978?
CVE-2024-35978 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix memory leak in hci_req_sync_complete() In 'hci_req_sync_complete()', always free the previous sync request state be...
How severe is CVE-2024-35978?
CVE-2024-35978 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-35978?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.