cbcvebase.
CVE-2024-27073
published 2024-05-01

CVE-2024-27073: In the Linux kernel, the following vulnerability has been resolved: media: ttpci: fix two memleaks in budget_av_attach When saa7146_register_device and…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.28%
20.4th percentile
In the Linux kernel, the following vulnerability has been resolved: media: ttpci: fix two memleaks in budget_av_attach When saa7146_register_device and saa7146_vv_init fails, budget_av_attach should free the resources it allocates, like the error-handling of ttpci_budget_init does. Besides, there are two fixme comment refers to such deallocations.

Affected

25 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < af37aed04997e644f7e1b52b696b62dcae3cc016af37aed04997e644f7e1b52b696b62dcae3cc016
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 910363473e4bf97da3c350e08d915546dd6cc30b910363473e4bf97da3c350e08d915546dd6cc30b
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 24e51d6eb578b82ff292927f14b9f5ec05a46beb24e51d6eb578b82ff292927f14b9f5ec05a46beb
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 55ca0c7eae8499bb96f4e5d9b26af95e89c4e6a055ca0c7eae8499bb96f4e5d9b26af95e89c4e6a0
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7393c681f9aa05ffe2385e8716989565eed2fe067393c681f9aa05ffe2385e8716989565eed2fe06
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1597cd1a88cfcdc4bf8b1b44cd458fed9a5a5d631597cd1a88cfcdc4bf8b1b44cd458fed9a5a5d63
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 656b8cc123d7635dd399d9f02594f27aa797ac3c656b8cc123d7635dd399d9f02594f27aa797ac3c
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d0b07f712bf61e1a3cf23c87c663791c42e50837d0b07f712bf61e1a3cf23c87c663791c42e50837
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.4.0-189.2095.4.0-189.209
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 2.6.12 < 5.4.2735.4.273
linuxlinux_kernel>= 5.11 < 5.15.1535.15.153
linuxlinux_kernel>= 5.16 < 6.1.836.1.83
linuxlinux_kernel>= 5.5 < 5.10.2145.10.214
linuxlinux_kernel>= 6.2 < 6.6.236.6.23
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.