CVE-2024-42158

In the Linux kernel, the following vulnerability has been resolved: s390/pkey: Use kfree_sensitive() to fix Coccinelle warnings Replace memzero_explicit() and kfree() with kfree_sensitive() to fix warnings reported by Coccinelle: WARNING opportunity for kfree_sensitive/kvfree_sensitive (line 1506) WARNING opportunity for kfree_sensitive/kvfree_sensitive (line 1643) WARNING opportunity for kfree_sensitive/kvfree_sensitive (line 1770)
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

02 Aug 2024, 14:31

Type Values Removed Values Added
First Time Linux linux Kernel
Linux
CWE CWE-669
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.1
References () https://git.kernel.org/stable/c/22e6824622e8a8889df0f8fc4ed5aea0e702a694 - () https://git.kernel.org/stable/c/22e6824622e8a8889df0f8fc4ed5aea0e702a694 - Patch
References () https://git.kernel.org/stable/c/62151a0acde90823bdfa991d598c85cf4b1d387d - () https://git.kernel.org/stable/c/62151a0acde90823bdfa991d598c85cf4b1d387d - Patch

30 Jul 2024, 13:32

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: s390/pkey: use kfree_SENSITIVE() para corregir las advertencias de Coccinelle. Reemplace memzero_explicit() y kfree() con kfree_SENSITIVE() para corregir las advertencias reportadas por Coccinelle: Oportunidad de ADVERTENCIA para kfree_SENSITIVE/KVFree_SENSITIVE ( línea 1506) Oportunidad de ADVERTENCIA para kfree_SENSITIVE/KVFree_SENSITIVE (línea 1643) Oportunidad de ADVERTENCIA para kfree_SENSITIVE/KVFree_SENSITIVE (línea 1770)

30 Jul 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-30 08:15

Updated : 2024-08-02 14:31


NVD link : CVE-2024-42158

Mitre link : CVE-2024-42158

CVE.ORG link : CVE-2024-42158


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-669

Incorrect Resource Transfer Between Spheres