A race condition was found in the Linux kernel's net/bluetooth device driver in conn_info_{min,max}_age_set() function. This can result in integrity overflow issue, possibly leading to bluetooth connection abnormality or denial of service.
References
Link | Resource |
---|---|
https://bugzilla.openanolis.cn/show_bug.cgi?id=8155 | Permissions Required |
https://bugzilla.openanolis.cn/show_bug.cgi?id=8155 | Permissions Required |
https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html | Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html | Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html | Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html | Third Party Advisory |
Configurations
History
05 Mar 2025, 14:10
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | |
References | () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html - Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html - Third Party Advisory | |
First Time |
Debian debian Linux
Debian |
13 Feb 2025, 18:17
Type | Values Removed | Values Added |
---|---|---|
Summary | A race condition was found in the Linux kernel's net/bluetooth device driver in conn_info_{min,max}_age_set() function. This can result in integrity overflow issue, possibly leading to bluetooth connection abnormality or denial of service. |
27 Jun 2024, 12:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
25 Jun 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
10 Feb 2024, 04:06
Type | Values Removed | Values Added |
---|---|---|
First Time |
Linux
Linux linux Kernel |
|
References | () https://bugzilla.openanolis.cn/show_bug.cgi?id=8155 - Permissions Required | |
CPE | cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.8 |
CWE | CWE-190 CWE-362 |
05 Feb 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-05 08:15
Updated : 2025-03-05 14:10
NVD link : CVE-2024-24857
Mitre link : CVE-2024-24857
JSON object : View
Products Affected
debian
- debian_linux
linux
- linux_kernel