CVE-2024-58241
published 2025-09-24CVE-2024-58241: In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Disable works on hci_unregister_dev This make use of disable_work_* on…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.13%
2.6th percentile
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_core: Disable works on hci_unregister_dev
This make use of disable_work_* on hci_unregister_dev since the hci_dev is
about to be freed new submissions are not disarable.
Affected
43 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.11.6-1 (forky) | linux 6.11.6-1 (forky) |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | — | — |
| linux | linux | >= 0d151a103775dd9645c78c97f77d6e2a5298d913 < cfdb13a54e05eb98d9940cb6d1a13e7f994d811f | cfdb13a54e05eb98d9940cb6d1a13e7f994d811f |
| linux | linux | >= 0d151a103775dd9645c78c97f77d6e2a5298d913 < 989fa5171f005ecf63440057218d8aeb1795287d | 989fa5171f005ecf63440057218d8aeb1795287d |
| linux | linux | >= 4.19.319 < 4.20 | 4.20 |
| linux | linux | >= 5.10.223 < 5.11 | 5.11 |
| linux | linux | >= 5.15.164 < 5.16 | 5.16 |
| linux | linux | >= 5.4.281 < 5.5 | 5.5 |
| linux | linux | >= 6.1.101 < 6.2 | 6.2 |
| linux | linux | >= 6.6.42 < 6.7 | 6.7 |
| linux | linux | >= 6.9.11 < 6.10 | 6.10 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.11.6-1 | 6.11.6-1 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: Kernel: Bluetooth HCI local DoS
vendor_redhat·2025-09-24·CVSS 5.5
CVE-2024-58241 [MEDIUM] CWE-362 kernel: Kernel: Bluetooth HCI local DoS
kernel: Kernel: Bluetooth HCI local DoS
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_core: Disable works on hci_unregister_dev
This make use of disable_work_* on hci_unregister_dev since the hci_dev is
about to be freed new submissions are not disarable.
A flaw was found in the Linux kernel's Bluetooth HCI core. This vulnerability allows a local denial of service via unregistering the Bluetooth controller or unloading the driver.
Statement: The patch prevents a race where work items can still run after hci_unregister_dev() and access a freed hci_dev (use-after-free), leading to kernel crashes. Practically, triggering this requires the ability to unregister/bring down the Bluetooth controller or unload the driver (e.g., CAP_NET_ADMIN/root or physical
Microsoft
Bluetooth: hci_core: Disable works on hci_unregister_dev
vendor_msrc·2025-09-09·CVSS 5.5
CVE-2024-58241 [MEDIUM] Bluetooth: hci_core: Disable works on hci_unregister_dev
Bluetooth: hci_core: Disable works on hci_unregister_dev
Mariner: Mariner
Linux: Linux
Customer Action Required: Yes
Debian
CVE-2024-58241: linux - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ...
vendor_debian·2024·CVSS 5.5
CVE-2024-58241 [MEDIUM] CVE-2024-58241: linux - In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ...
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Disable works on hci_unregister_dev This make use of disable_work_* on hci_unregister_dev since the hci_dev is about to be freed new submissions are not disarable.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 6.11.6-1)
sid: resolved (fixed in 6.11.6-1)
trixie: resolved (fixed in 6.11.6-1)
OSV
CVE-2024-58241: In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Disable works on hci_unregister_dev This make use of disable_
osv·2025-09-24·CVSS 5.5
CVE-2024-58241 [MEDIUM] CVE-2024-58241: In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Disable works on hci_unregister_dev This make use of disable_
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_core: Disable works on hci_unregister_dev This make use of disable_work_* on hci_unregister_dev since the hci_dev is about to be freed new submissions are not disarable.
GHSA
GHSA-wxgw-p4p4-4xpp: In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_core: Disable works on hci_unregister_dev
This make use of disabl
ghsa_unreviewed·2025-09-24
CVE-2024-58241 [MEDIUM] GHSA-wxgw-p4p4-4xpp: In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_core: Disable works on hci_unregister_dev
This make use of disabl
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_core: Disable works on hci_unregister_dev
This make use of disable_work_* on hci_unregister_dev since the hci_dev is
about to be freed new submissions are not disarable.
No detection rules found.
No public exploits indexed.
2025-09-24
Published