Wind River Support Network

HomeDefectsLIN1023-7534
Fixed

LIN1023-7534 : Security Advisory - linux - CVE-2024-42147

Created: Jul 30, 2024    Updated: Sep 15, 2024
Resolved Date: Jul 30, 2024
Found In Version: 10.23.30.1
Fix Version: 10.23.30.13
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:

crypto: hisilicon/debugfs - Fix debugfs uninit process issue

During the zip probe process, the debugfs failure does not stop
the probe. When debugfs initialization fails, jumping to the
error branch will also release regs, in addition to its own
rollback operation.

As a result, it may be released repeatedly during the regs
uninit process. Therefore, the null check needs to be added to
the regs uninit process.

CREATE(Triage):(User=admin) CVE-2024-42147 (https://nvd.nist.gov/vuln/detail/CVE-2024-42147)

CVEs


Live chat
Online