PT-2024-36898 · Linux+4 · Linux Kernel+4
Published
2024-11-14
·
Updated
2026-05-26
·
CVE-2024-56591
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A vulnerability in the Linux kernel has been resolved. The issue is related to the Bluetooth component, specifically in the hci conn module. The fix involves using
disable delayed work sync instead of cancel delayed work sync to not only cancel ongoing work but also disable new submissions. This change is necessary because the object holding the work is about to be freed.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Debian
Linuxmint
Linux Kernel
Red Hat
Ubuntu