CVE-2024-56654
Published: Dec 27, 2024
Modified: May 23, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix using rcu_read_(un)lock while iterating The usage of rcu_read_(un)lock while inside list_for_each_entry_rcu is not safe since for the most part entries fetched this way shall be treated as rcu_dereference: Note that the value returned by rcu_dereference() is valid only within the enclosing RCU read-side critical section [1]_. For example, the following is **not** legal:: rcu_read_lock(); p = rcu_dereference(head.next); rcu_read_unlock(); x = p->address; /* BUG!!! */ rcu_read_lock(); y = p->data; /* BUG!!! */ rcu_read_unlock();
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected a0bfde167b506423111ddb8cd71930497a40fc54 - < 0108132d7d76d884e443d18b4f067cdf2811911baffected a0bfde167b506423111ddb8cd71930497a40fc54 - < f9ecc90b5d501b3a5a62d0685d5104f934bb0104affected a0bfde167b506423111ddb8cd71930497a40fc54 - < 581dd2dc168fe0ed2a7a5534a724f0d3751c93aeaffected b475c1109251e30ec21fb574d72a1c71a4ab0039affected 2ccde10127447c1a5caad8469fede945bdb62fdf+2 more versions |
Linux | Linux | affected 6.6unaffected 0 - < 6.6unaffected 6.6.67 - <= 6.6.*unaffected 6.12.6 - <= 6.12.*unaffected 6.13 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now