USN-6973-4: Linux kernel (Raspberry Pi) vulnerabilities
It was discovered that a race condition existed in the Bluetooth subsystem in the Linux kernel, leading to a null pointer dereference vulnerability. A privileged local attacker could use this to possibly cause a denial of service (system crash). (CVE-2024-24860) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-6973-4?
USN-6973-4 is classified as a critical vulnerability due to the potential for local attackers to cause a denial of service.
How do I fix USN-6973-4?
To fix USN-6973-4, update to the recommended kernel version 5.4.0-1115.127~18.04.1 for Ubuntu 18.04.
Who is affected by USN-6973-4?
USN-6973-4 affects Ubuntu 18.04 users running the specific vulnerable kernel packages related to Bluetooth.
What type of vulnerability is USN-6973-4?
USN-6973-4 represents a null pointer dereference vulnerability caused by a race condition in the Bluetooth subsystem of the Linux kernel.
Can USN-6973-4 lead to remote exploits?
No, USN-6973-4 is a local vulnerability, meaning only privileged local attackers can exploit it to cause system crashes.