cbcvebase.
CVE-2024-27076
published 2024-05-01

CVE-2024-27076: In the Linux kernel, the following vulnerability has been resolved: media: imx: csc/scaler: fix v4l2_ctrl_handler memory leak Free the memory allocated in…

PriorityP416medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.29%
21.2th percentile
In the Linux kernel, the following vulnerability has been resolved: media: imx: csc/scaler: fix v4l2_ctrl_handler memory leak Free the memory allocated in v4l2_ctrl_handler_init on release.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < 8c2e4efe1278cd2b230cdbf90a6cefbf00acc2828c2e4efe1278cd2b230cdbf90a6cefbf00acc282
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < 5d9fe604bf9b5b09d2215225df55f22a4cbbc6845d9fe604bf9b5b09d2215225df55f22a4cbbc684
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < b1d0eebaf87cc9ccd05f779ec4a0589f95d6c18bb1d0eebaf87cc9ccd05f779ec4a0589f95d6c18b
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < 8df9a3c7044b847e9c4dc7e683fd64c6b873f3288df9a3c7044b847e9c4dc7e683fd64c6b873f328
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < d164ddc21e986dd9ad614b4b01746e5457aeb24fd164ddc21e986dd9ad614b4b01746e5457aeb24f
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < 42492b00156c03a79fd4851190aa63045d6a15ce42492b00156c03a79fd4851190aa63045d6a15ce
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < 6c92224721a439d6350db5933a1060768dcd565e6c92224721a439d6350db5933a1060768dcd565e
linuxlinux>= a8ef0488cc592921a917362cca66af4a601987b9 < 4797a3dd46f220e6d83daf54d70c5b33db6deb014797a3dd46f220e6d83daf54d70c5b33db6deb01
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.4.0-189.2095.4.0-189.209
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 5.11 < 5.15.1535.15.153
linuxlinux_kernel>= 5.16 < 6.1.836.1.83
linuxlinux_kernel>= 5.4 < 5.4.2735.4.273
linuxlinux_kernel>= 5.5 < 5.10.2145.10.214
linuxlinux_kernel>= 6.2 < 6.6.236.6.23
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.