A race condition was found in the Linux kernel's net/bluetooth device driver in conn_info_{min,max}_age_set() function. This can result in integrity overflow issue, possibly leading to bluetooth connection abnormality or denial of service.
References
| Link | Resource |
|---|---|
| https://bugzilla.openanolis.cn/show_bug.cgi?id=8155 | Permissions Required |
| https://bugzilla.openanolis.cn/show_bug.cgi?id=8155 | Permissions Required |
| https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html | Third Party Advisory |
| https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html | Third Party Advisory |
| https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html | Third Party Advisory |
| https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html | Third Party Advisory |
Configurations
History
05 Mar 2025, 14:10
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Debian debian Linux
Debian |
|
| References | () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html - Third Party Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html - Third Party Advisory | |
| CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* |
13 Feb 2025, 18:17
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | A race condition was found in the Linux kernel's net/bluetooth device driver in conn_info_{min,max}_age_set() function. This can result in integrity overflow issue, possibly leading to bluetooth connection abnormality or denial of service. |
27 Jun 2024, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
25 Jun 2024, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Feb 2024, 04:06
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-190 CWE-362 |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.8 |
| CPE | cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
|
| References | () https://bugzilla.openanolis.cn/show_bug.cgi?id=8155 - Permissions Required | |
| First Time |
Linux
Linux linux Kernel |
05 Feb 2024, 08:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-02-05 08:15
Updated : 2025-03-05 14:10
NVD link : CVE-2024-24857
Mitre link : CVE-2024-24857
JSON object : View
Products Affected
debian
- debian_linux
linux
- linux_kernel
