cbcvebase.
CVE-2024-46673
published 2024-09-13

CVE-2024-46673: In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aac_probe_one() calls hardware-specific…

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.29%
21.6th percentile
In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aac_probe_one() calls hardware-specific init functions through the aac_driver_ident::init pointer, all of which eventually call down to aac_init_adapter(). If aac_init_adapter() fails after allocating memory for aac_dev::queues, it frees the memory but does not clear that member. After the hardware-specific init function returns an error, aac_probe_one() goes down an error path that frees the memory pointed to by aac_dev::queues, resulting.in a double-free.

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
debianlinux-6.1< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
linuxlinux
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < d237c7d06ffddcdb5d36948c527dc01284388218d237c7d06ffddcdb5d36948c527dc01284388218
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 564e1986b00c5f05d75342f8407f75f0a17b94df564e1986b00c5f05d75342f8407f75f0a17b94df
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 9e96dea7eff6f2bbcd0b42a098012fc66af9eb699e96dea7eff6f2bbcd0b42a098012fc66af9eb69
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 85449b28ff6a89c4513115e43ddcad949b5890c985449b28ff6a89c4513115e43ddcad949b5890c9
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 60962c3d8e18e5d8dfa16df788974dd7f35bd87a60962c3d8e18e5d8dfa16df788974dd7f35bd87a
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 8a3995a3ffeca280a961b59f5c99843d81b159298a3995a3ffeca280a961b59f5c99843d81b15929
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 4b540ec7c0045c2d01c4e479f34bbc8f147afa4c4b540ec7c0045c2d01c4e479f34bbc8f147afa4c
linuxlinux>= 8e0c5ebde82b08f6d996e11983890fc4cc085fab < 919ddf8336f0b84c0453bac583808c9f165a85c2919ddf8336f0b84c0453bac583808c9f165a85c2
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1
linuxlinux_kernel>= 0 < 6.1.112-16.1.112-1
linuxlinux_kernel>= 0 < 6.10.9-16.10.9-1
linuxlinux_kernel>= 0 < 6.10.9-16.10.9-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 0 < 4.4.0-260.2944.4.0-260.294
linuxlinux_kernel>= 0 < 4.15.0-230.2424.15.0-230.242
linuxlinux_kernel>= 2.6.15 < 4.19.3214.19.321
linuxlinux_kernel>= 4.20 < 5.4.2835.4.283
linuxlinux_kernel>= 5.11 < 5.15.1665.15.166
linuxlinux_kernel>= 5.16 < 6.1.1086.1.108

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.