CVE-2024-50148
Published: Nov 7, 2024
Modified: May 12, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: bnep: fix wild-memory-access in proto_unregister There's issue as follows: KASAN: maybe wild-memory-access in range [0xdead...108-0xdead...10f] CPU: 3 UID: 0 PID: 2805 Comm: rmmod Tainted: G W RIP: 0010:proto_unregister+0xee/0x400 Call Trace: <TASK> __do_sys_delete_module+0x318/0x580 do_syscall_64+0xc1/0x1d0 entry_SYSCALL_64_after_hwframe+0x77/0x7f As bnep_init() ignore bnep_sock_init()'s return value, and bnep_sock_init() will cleanup all resource. Then when remove bnep module will call bnep_sock_cleanup() to cleanup sock's resource. To solve above issue just return bnep_sock_init()'s return value in bnep_exit().
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < e232728242c4e98fb30e4c6bedb6ba8b482b6301affected 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < 2c439470b23d78095a0d2f923342df58b155f669affected 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < 6c151aeb6dc414db8f4daf51be072e802fae6667affected 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < fa58e23ea1359bd24b323916d191e2e9b4b19783affected 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - < 03015b6329e6de42f03ec917c25c4cf944f81f66+3 more versions |
Linux | Linux | affected 2.6.12unaffected 0 - < 2.6.12unaffected 4.19.323 - <= 4.19.*unaffected 5.4.285 - <= 5.4.*unaffected 5.10.229 - <= 5.10.*+5 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now