CVE-2024-41002: crypto: hisilicon/sec - Fix memory leak for sec resource release
Published Jul 12, 2024
·Updated
crypto: hisilicon/sec - Fix memory leak for sec resource release
Affected Software
8 affected componentsFixes available
Linux Linux kernel<5.15.162
Linux Linux kernel>=5.16<6.1.96
Linux Linux kernel>=6.2<6.6.36
Linux Linux kernel>=6.7<6.9.7
debian/linux<=5.10.223-1, <=5.10.234-1
6.1.129-16.1.135-16.12.25-1
debian/linux-6.1
6.1.129-1~deb11u1
Microsoft azl3 kernel 6.6.47.1-1
Microsoft azl3 kernel 6.6.35.1-5
Remediation
Event History
Jul 12, 2024
CVE Published
via MITRE·12:37 PM
Data Sourced
via MITRE·12:37 PM
Description
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Sep 11, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Apr 27, 2025
Data Sourced
via Ubuntu·06:16 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-41002?
CVE-2024-41002 has been reported, but the specific severity level is not detailed in the description.
2
How do I fix CVE-2024-41002?
To fix CVE-2024-41002, update the Linux kernel to versions 6.1.123-1, 6.1.119-1, 6.12.11-1, or 6.12.12-1.
3
Which versions of the Linux kernel are affected by CVE-2024-41002?
CVE-2024-41002 affects Linux kernel versions prior to 5.15.162 and those between 5.16 and 6.1.96, as well as various versions up to 6.9.7.
4
What type of vulnerability is CVE-2024-41002?
CVE-2024-41002 is classified as a memory leak vulnerability within the Linux kernel's crypto subsystem.
5
Is there a workaround for CVE-2024-41002?
No specific workaround for CVE-2024-41002 is mentioned; updating the kernel is the recommended action.