CVE-2024-46741
🟡 Monitoruj
Podwójne zwolnienie bufora w jądrze Linuxa w fastrpc może prowadzić do awarii systemu.
CVSS
7.8
EPSS
0.3%
Exploit
none
Vendor
linux
Opis źródłowy (NVD)
In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix double free of 'buf' in error path smatch warning: drivers/misc/fastrpc.c:1926 fastrpc_req_mmap() error: double free of 'buf' In fastrpc_req_mmap() error path, the fastrpc buffer is freed in fastrpc_req_munmap_impl() if unmap is successful. But in the end, there is an unconditional call to fastrpc_buf_free(). So the above case triggers the double free of fastrpc buf.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.8 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.3% |
| Opublikowano (NVD) | 2024-09-18 08:15:03 UTC |
| Ostatnia modyfikacja (NVD) | 2026-08-27 13:16:32 UTC |
Referencje
- https://git.kernel.org/stable/c/4753cc37b6606ef9a7ec22861d380d45e2707f9a (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/bfc1704d909dc9911a558b1a5833d3d61a43a1f2 (416baaa9-dc9f-4396-8d5f-8c081fb06d67) [Patch]
- https://git.kernel.org/stable/c/e8c276d4dc0e19ee48385f74426aebc855b49aaf (416baaa9-dc9f-4396-8d5f-8c081fb06d67) [Patch]
- https://git.kernel.org/stable/c/f77dc8a75859e559f3238a6d906206259227985e (416baaa9-dc9f-4396-8d5f-8c081fb06d67) [Patch]