5.5
CVE-2024-26829
- EPSS 0.23%
- Veröffentlicht 17.04.2024 10:15:09
- Zuletzt bearbeitet 19.06.2025 13:15:35
- CVE-Watchlists
- Unerledigt
media: ir_toy: fix a memleak in irtoy_tx
In the Linux kernel, the following vulnerability has been resolved: media: ir_toy: fix a memleak in irtoy_tx When irtoy_command fails, buf should be freed since it is allocated by irtoy_tx, or there is a memleak.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version < 5.10.210
Linux ≫ Linux Kernel Version >= 5.15.54 < 5.15.149
Linux ≫ Linux Kernel Version >= 5.16 < 6.1.79
Linux ≫ Linux Kernel Version >= 6.2 < 6.6.18
Linux ≫ Linux Kernel Version >= 6.7 < 6.7.6
Linux ≫ Linux Kernel Version6.8 Updaterc1
Linux ≫ Linux Kernel Version6.8 Updaterc2
Linux ≫ Linux Kernel Version6.8 Updaterc3
Linux ≫ Linux Kernel Version6.8 Updaterc4
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.133 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
|
CWE-401 Missing Release of Memory after Effective Lifetime
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
https://git.kernel.org/stable/c/207557e393a135c1b6fe1df7cc0741d2c1789fff
https://git.kernel.org/stable/c/486a4176bc783df798bce2903824801af8d2c3ae
https://git.kernel.org/stable/c/7219a692ffc00089015ada33b85b334d1a4b6e8e
https://git.kernel.org/stable/c/b37259448bbc70af1d0e52a9dd5559a9c29c9621
https://git.kernel.org/stable/c/be76ad74a43f90f340f9f479e6b04f02125f6aef
https://git.kernel.org/stable/c/dc9ceb90c4b42c6e5c6757df1d6257110433788e