CVE-2024-42138
Published: Jul 30, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI file In case of invalid INI file mlxsw_linecard_types_init() deallocates memory but doesn't reset pointer to NULL and returns 0. In case of any error occurred after mlxsw_linecard_types_init() call, mlxsw_linecards_init() calls mlxsw_linecard_types_fini() which performs memory deallocation again. Add pointer reset to NULL. Found by Linux Verification Center (linuxtesting.org) with SVACE.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected b217127e5e4ee0ecfce7c5f84cfe082238123bda - < ab557f5cd993a3201b09593633d04b891263d5c0affected b217127e5e4ee0ecfce7c5f84cfe082238123bda - < f8b55a465b0e8a500179808166fe9420f5c091a1affected b217127e5e4ee0ecfce7c5f84cfe082238123bda - < 9af7437669b72f804fc4269f487528dbbed142a2affected b217127e5e4ee0ecfce7c5f84cfe082238123bda - < 8ce34dccbe8fa7d2ef86f2d8e7db2a9b67cabfc3 |
Linux | Linux | affected 5.19unaffected 0 - < 5.19unaffected 6.1.98 - <= 6.1.*unaffected 6.6.39 - <= 6.6.*unaffected 6.9.9 - <= 6.9.*+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now