linux, linux-aws, linux-azure, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle, linux-oracle-5.4, linux-raspi, linux-xilinx-zynqmp vulnerabilities
It was discovered that a race condition existed in the Bluetooth subsystem in the Linux kernel, leading to a null pointer dereference vulnerability. A privileged local attacker could use this to possibly cause a denial of service (system crash). (CVE-2024-24860) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - SuperH RISC architecture; - MMC subsystem; - Network drivers; - SCSI drivers; - GFS2 file system; - IPv4 networking; - IPv6 networking; - HD-audio driver; (CVE-2024-26830, CVE-2024-39484, CVE-2024-36901, CVE-2024-26929, CVE-2024-26921, CVE-2021-46926, CVE-2023-52629, CVE-2023-52760)
02 / AFFECTED SOFTWARE
Affected packages
104 explicit affected versions
96 explicit affected versions
92 explicit affected versions
55 explicit affected versions
96 explicit affected versions
73 explicit affected versions
61 explicit affected versions
91 explicit affected versions
94 explicit affected versions
84 explicit affected versions
30 explicit affected versions
84 explicit affected versions
93 explicit affected versions
54 explicit affected versions
83 explicit affected versions
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
It was discovered that a race condition existed in the Bluetooth subsystem in the Linux kernel, leading to a null pointer dereference vulnerability. A privileged local attacker could use this to possibly cause a denial of service (system crash). (CVE-2024-24860) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - SuperH RISC architecture; - MMC subsystem; - Network drivers; - SCSI drivers; - GFS2 file system; - IPv4 networking; - IPv6 networking; - HD-audio driver; (CVE-2024-26830, CVE-2024-39484, CVE-2024-36901, CVE-2024-26929, CVE-2024-26921, CVE-2021-46926, CVE-2023-52629, CVE-2023-52760)
05 / REFERENCES
Further evidence
- https://ubuntu.com/security/CVE-2021-46926
- https://ubuntu.com/security/CVE-2023-52629
- https://ubuntu.com/security/CVE-2023-52760
- https://ubuntu.com/security/CVE-2024-24860
- https://ubuntu.com/security/CVE-2024-26830
- https://ubuntu.com/security/CVE-2024-26921
- https://ubuntu.com/security/CVE-2024-26929
- https://ubuntu.com/security/CVE-2024-36901
- https://ubuntu.com/security/CVE-2024-39484
- https://ubuntu.com/security/notices/USN-6973-1