cbcvebase.
CVE-2024-35833
published 2024-05-17

CVE-2024-35833: In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: Fix a memory leak related to the queue command DMA This…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.3th percentile
In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: Fix a memory leak related to the queue command DMA This dma_alloc_coherent() is undone neither in the remove function, nor in the error handling path of fsl_qdma_probe(). Switch to the managed version to fix both issues.

Affected

21 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < 1c75fe450b5200c78f4a102a0eb8e15d8f1ccda81c75fe450b5200c78f4a102a0eb8e15d8f1ccda8
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < ae6769ba51417c1c86fb645812d5bff455eee802ae6769ba51417c1c86fb645812d5bff455eee802
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < 15eb996d7d13cb72a16389231945ada8f0fef2c315eb996d7d13cb72a16389231945ada8f0fef2c3
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < 25ab4d72eb7cbfa0f3d97a139a9b2bfcaa72dd5925ab4d72eb7cbfa0f3d97a139a9b2bfcaa72dd59
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < 5cd8a51517ce15edbdcea4fc74c4c127ddaa1bd65cd8a51517ce15edbdcea4fc74c4c127ddaa1bd6
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < 198270de9d8eb3b5d5f030825ea303ef95285d24198270de9d8eb3b5d5f030825ea303ef95285d24
linuxlinux>= b092529e0aa09829a6404424ce167bf3ce3235e2 < 3aa58cb51318e329d203857f7a191678e60bb7143aa58cb51318e329d203857f7a191678e60bb714
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 5.1 < 5.4.2695.4.269
linuxlinux_kernel>= 5.11 < 5.15.1495.15.149
linuxlinux_kernel>= 5.16 < 6.1.786.1.78
linuxlinux_kernel>= 5.5 < 5.10.2105.10.210
linuxlinux_kernel>= 6.2 < 6.6.176.6.17
linuxlinux_kernel>= 6.7 < 6.7.56.7.5

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.