PT-2025-3598 · Linux+4 · Linux Kernel+4

Published

2024-11-20

·

Updated

2026-05-26

·

CVE-2024-57872

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved, related to the scsi: ufs: pltfrm module. The issue is addressed by dellocating the HBA during ufshcd pltfrm remove(), ensuring the scsi host is properly cleaned up using scsi host dev release(). If not properly cleaned up, it may lead to memory leaks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-17881
ALT-PU-2025-12647
AZL-55730
AZL-55773
BDU:2025-15367
CVE-2024-57872
ECHO-957A-BBBF-4EAC
OESA-2025-1159
OESA-2025-1160
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7468-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Debian
Linuxmint
Linux Kernel
Ubuntu