PT-2024-1944 · Linux+1 · Linux Kernel+1

Oliver Sang

·

Published

2024-02-08

·

Updated

2024-10-02

·

CVE-2024-26604

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to errors in pointer dereferencing in functions such as create dir(), kobject del(), kobject cleanup(), and kobj child ns ops() in the Linux kernel's b/kobject.c library. Exploitation of this issue may allow a remote attacker to cause a denial of service. The problem is reported to be caused by a commit that removed redundant checks for whether ktype is NULL, which has been reverted until the root cause can be found.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-01740
CVE-2024-26604

Affected Products

Linux Kernel
Red Os