PT-2024-21633 · Linux+5 · Linux Kernel+5

Published

2024-03-02

·

Updated

2025-03-01

·

CVE-2024-27072

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the removal of useless locks in the usbtv video free() function, which could lead to a deadlock. The usbtv stop() call has also been removed since it will be called when unregistering the device. This issue would only be noticed if you disconnect while streaming, but now it is noticeable even when disconnecting while not streaming.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-03087
CVE-2024-27072
DLA-4008-1
DLA-4075-1
OESA-2024-1677
OESA-2024-1678
OESA-2024-1680
OESA-2024-1682
SUSE-SU-2024:1643-1
SUSE-SU-2024:1646-1
SUSE-SU-2024:1870-1
SUSE-SU-2024:2008-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2190-1
SUSE-SU-2025:20008-1
SUSE-SU-2025:20028-1
USN-6816-1
USN-6817-1
USN-6817-2
USN-6817-3
USN-6878-1
USN-7166-1
USN-7166-2
USN-7166-3
USN-7166-4
USN-7186-1
USN-7186-2
USN-7194-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu