CVE-2024-35972: bnxt_en: Fix possible memory leak in bnxt_rdma_aux_device_init()
Published May 20, 2024
·Updated
bnxten: Fix possible memory leak in bnxtrdmaauxdeviceinit()
Affected Software
10 affected componentsFixes available
Linux Linux kernel>=5.5<5.10.216
Linux Linux kernel>=5.11<5.15.158
Linux Linux kernel>=5.16<6.1.87
Linux Linux kernel>=6.2<6.6.28
Linux Linux kernel>=6.7<6.8.7
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
Microsoft azl3 kernel 6.6.22.1-2
Microsoft azl3 kernel 6.6.35.1-5
Microsoft cbl2 kernel 5.15.158.1-1
Microsoft cbl2 kernel 5.15.153.1-2
Remediation
Event History
May 20, 2024
CVE Published
via MITRE·09:41 AM
Data Sourced
via MITRE·09:41 AM
Description
May 24, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Jul 11, 2024
Data Sourced
via Launchpad·07:49 PM
Description
Dec 2, 2024
Data Sourced
via Ubuntu·08:18 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-35972?
CVE-2024-35972 is classified as a high-severity vulnerability due to potential memory leaks in the Linux kernel.
2
How do I fix CVE-2024-35972?
You can fix CVE-2024-35972 by upgrading to the latest patched versions of the Linux kernel, such as 5.10.223-1 or 6.1.123-1.
3
What versions of the Linux kernel are affected by CVE-2024-35972?
CVE-2024-35972 affects various versions of the Linux kernel ranging from 5.5 to 6.8.7.
4
What is the impact of CVE-2024-35972?
The impact of CVE-2024-35972 includes memory leaks which can lead to degraded system performance and resource exhaustion.
5
Is CVE-2024-35972 a remote code execution vulnerability?
No, CVE-2024-35972 is not a remote code execution vulnerability; it primarily concerns memory management in the Linux kernel.