cbcvebase.
CVE-2024-49955
published 2024-10-21

CVE-2024-49955: In the Linux kernel, the following vulnerability has been resolved: ACPI: battery: Fix possible crash when unregistering a battery hook When a battery hook…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.34%
26.5th percentile
In the Linux kernel, the following vulnerability has been resolved: ACPI: battery: Fix possible crash when unregistering a battery hook When a battery hook returns an error when adding a new battery, then the battery hook is automatically unregistered. However the battery hook provider cannot know that, so it will later call battery_hook_unregister() on the already unregistered battery hook, resulting in a crash. Fix this by using the list head to mark already unregistered battery hooks as already being unregistered so that they can be ignored by battery_hook_unregister().

Affected

35 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.115-1 (bookworm)linux 6.1.115-1 (bookworm)
debianlinux-6.1< linux 6.1.115-1 (bookworm)linux 6.1.115-1 (bookworm)
linuxlinux
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < 76fb2cbf01571926da8ecf6876cc8cb07d3f518376fb2cbf01571926da8ecf6876cc8cb07d3f5183
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < c47843a831e0eae007ad7e848d208e675ba4c132c47843a831e0eae007ad7e848d208e675ba4c132
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < da964de4c18199e14b961b5b2e5e6570552a313cda964de4c18199e14b961b5b2e5e6570552a313c
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < 07b98400cb0285a6348188aa8c5ec6a2ae0551f707b98400cb0285a6348188aa8c5ec6a2ae0551f7
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < ca1fb7942a287b40659cc79551a1de54a2c2e7d5ca1fb7942a287b40659cc79551a1de54a2c2e7d5
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < ce31847f109c3a5b2abdd19d7bcaafaacfde53dece31847f109c3a5b2abdd19d7bcaafaacfde53de
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < ca26e8eed9c1c6651f51f7fa38fe444f8573cd1bca26e8eed9c1c6651f51f7fa38fe444f8573cd1b
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < 9f469ef1c79dac7f9ac1518643a33703918f7e139f469ef1c79dac7f9ac1518643a33703918f7e13
linuxlinux>= fa93854f7a7ed63d054405bf3779247d5300edd3 < 76959aff14a0012ad6b984ec7686d163deccdc1676959aff14a0012ad6b984ec7686d163deccdc16
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.115-16.1.115-1
linuxlinux_kernel>= 0 < 6.11.4-16.11.4-1
linuxlinux_kernel>= 0 < 6.11.4-16.11.4-1
linuxlinux_kernel>= 0 < 5.4.0-208.2285.4.0-208.228
linuxlinux_kernel>= 0 < 5.15.0-127.1375.15.0-127.137
linuxlinux_kernel>= 0 < 6.8.0-54.566.8.0-54.56
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 4.17 < 5.10.2275.10.227
linuxlinux_kernel>= 5.11 < 5.15.1685.15.168
linuxlinux_kernel>= 5.16 < 6.1.1136.1.113
linuxlinux_kernel>= 6.11 < 6.11.36.11.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.