UBUNTU-CVE-2024-26734
Dashboard / Vulnerabilities / UBUNTU-CVE-2024-26734
UBUNTU-CVE-2024-26734
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: devlink: fix possible use-after-free and memory leaks in devlink_init() The pernet operations structure for the subsystem must be registered before registering the generic netlink family. Make an unregister in case of unsuccessful registration.
References: https://ubuntu.com/security/CVE-2024-26734, https://git.kernel.org/linus/def689fc26b9a9622d2e2cb0c4933dd3b1c8071c, https://git.kernel.org/stable/c/919092bd5482b7070ae66d1daef73b600738f3a2, https://git.kernel.org/stable/c/e91d3561e28d7665f4f837880501dc8755f635a9, https://git.kernel.org/stable/c/def689fc26b9a9622d2e2cb0c4933dd3b1c8071c, https://www.cve.org/CVERecord?id=CVE-2024-26734, https://ubuntu.com/security/notices/USN-6895-1, https://ubuntu.com/security/notices/USN-6895-2, https://ubuntu.com/security/notices/USN-6900-1, https://ubuntu.com/security/notices/USN-6895-3, https://ubuntu.com/security/notices/USN-6895-4
Affected packages
Package
Name: linux-hwe-edge
Purl: pkg:deb/ubuntu/linux-hwe-edge?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
