PT-2024-7594 · Linux+7 · Linux Kernel+7

Published

2024-06-28

·

Updated

2026-05-26

·

CVE-2024-41062

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue occurs between the system call to close the sock and hci rx work, where the former releases the sock and the latter accesses it without lock protection. This can lead to a work thread accessing a released sock when receiving data. To resolve this, a chan mutex is added in the rx callback of the sock to achieve synchronization between the sock release and recv cb. The problem is related to the l2cap sock recv cb() function in the net/bluetooth/l2cap sock.c module of the Linux kernel.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
BDU:2024-09000
CVE-2024-41062
DLA-4008-1
INFSA-2025_6966
MGASA-2024-0277
MGASA-2024-0278
OESA-2024-1960
OESA-2024-1961
OESA-2024-1962
OESA-2024-1964
OPENSUSE-SU-2024_3190-1
OPENSUSE-SU-2024_3209-1
OPENSUSE-SU-2024_3249-1
OPENSUSE-SU-2024_3408-1
OPENSUSE-SU-2024_3483-1
OPENSUSE-SU-2024_3587-1
OPENSUSE-SU-2024_3592-1
OPENSUSE-SU-2025_1072-1
OPENSUSE-SU-2025_1104-1
OPENSUSE-SU-2025_1119-1
OPENSUSE-SU-2025_1120-1
OPENSUSE-SU-2025_1123-1
OPENSUSE-SU-2025_1139-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2024:3189-1
SUSE-SU-2024:3190-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3209-1
SUSE-SU-2024:3225-1
SUSE-SU-2024:3227-1
SUSE-SU-2024:3249-1
SUSE-SU-2024:3251-1
SUSE-SU-2024:3252-1
SUSE-SU-2024:3383-1
SUSE-SU-2024:3408-1
SUSE-SU-2024:3483-1
SUSE-SU-2024:3499-1
SUSE-SU-2024:3569-1
SUSE-SU-2024:3587-1
SUSE-SU-2024:3592-1
SUSE-SU-2025:1057-1
SUSE-SU-2025:1064-1
SUSE-SU-2025:1072-1
SUSE-SU-2025:1088-1
SUSE-SU-2025:1104-1
SUSE-SU-2025:1119-1
SUSE-SU-2025:1120-1
SUSE-SU-2025:1123-1
SUSE-SU-2025:1139-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
USN-7089-1
USN-7089-2
USN-7089-3
USN-7089-4
USN-7089-5
USN-7089-6
USN-7089-7
USN-7090-1
USN-7095-1
USN-7156-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu