CVE Database
/

CVE-2024-42138

Back to search

CVE-2024-42138

Published: Jul 30, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI file In case of invalid INI file mlxsw_linecard_types_init() deallocates memory but doesn't reset pointer to NULL and returns 0. In case of any error occurred after mlxsw_linecard_types_init() call, mlxsw_linecards_init() calls mlxsw_linecard_types_fini() which performs memory deallocation again. Add pointer reset to NULL. Found by Linux Verification Center (linuxtesting.org) with SVACE.

VendorProductVersions

Linux

Linux

affected
b217127e5e4ee0ecfce7c5f84cfe082238123bda - < ab557f5cd993a3201b09593633d04b891263d5c0
affected
b217127e5e4ee0ecfce7c5f84cfe082238123bda - < f8b55a465b0e8a500179808166fe9420f5c091a1
affected
b217127e5e4ee0ecfce7c5f84cfe082238123bda - < 9af7437669b72f804fc4269f487528dbbed142a2
affected
b217127e5e4ee0ecfce7c5f84cfe082238123bda - < 8ce34dccbe8fa7d2ef86f2d8e7db2a9b67cabfc3

Linux

Linux

affected
5.19
unaffected
0 - < 5.19
unaffected
6.1.98 - <= 6.1.*
unaffected
6.6.39 - <= 6.6.*
unaffected
6.9.9 - <= 6.9.*

+1 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now