First published: Tue Jan 30 2024(Updated: )
Use After Free vulnerability in Linux Linux kernel kernel on Linux, x86, ARM (bluetooth modules) allows Local Execution of Code. This vulnerability is associated with program files https://gitee.Com/anolis/cloud-kernel/blob/devel-5.10/net/bluetooth/af_bluetooth.C. This issue affects Linux kernel: from v2.6.12-rc2 before v6.8-rc1.
Credit: security@openanolis.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | >=2.6.12.1<6.8 | |
Linux Kernel | =2.6.12-rc2 | |
Linux Kernel | =2.6.12-rc3 | |
Linux Kernel | =2.6.12-rc4 | |
Linux Kernel | =2.6.12-rc5 | |
Linux Kernel | =2.6.12-rc6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-21803 is classified as a High severity vulnerability due to its potential for local execution of code.
To resolve CVE-2024-21803, update the Linux kernel to the latest patched version that addresses this issue.
CVE-2024-21803 affects Linux kernel versions from 2.6.12.1 up to but not including 6.8.
CVE-2024-21803 is a Use After Free vulnerability found in the Bluetooth modules of the Linux kernel.
Yes, CVE-2024-21803 allows for local execution of code, which poses significant security risks.