CVE-2024-40934: HID: logitech-dj: Fix memory leak in logi_dj_recv_switch_to_dj_mode()
In the Linux kernel, the following vulnerability has been resolved:
HID: logitech-dj: Fix memory leak in logidjrecvswitchtodjmode()
Fix a memory leak on logidjrecvsendreport() error path.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-40934?
CVE-2024-40934 has a medium severity level due to a memory leak in the Linux kernel's HID subsystem.
How do I fix CVE-2024-40934?
To fix CVE-2024-40934, update to the patched versions of the Linux kernel, specifically those released after 5.4.279, 5.10.221, 5.15.162, 6.1.95, 6.6.35, 6.9.6, and 6.10-rc2.
Which versions of the Linux kernel are affected by CVE-2024-40934?
CVE-2024-40934 affects Linux kernel versions from 5.4.257 to 5.4.279, 5.10.195 to 5.10.221, 5.15.132 to 5.15.162, 6.1.53 to 6.1.95, 6.6.0 to 6.6.35, and 6.7.0 to 6.9.6.
What component is impacted by CVE-2024-40934?
CVE-2024-40934 impacts the HID: logitech-dj component of the Linux kernel.
Is there a workaround for CVE-2024-40934?
There are no known workarounds for CVE-2024-40934, and applying the appropriate kernel updates is the recommended solution.