CVE-2024-26760

Source
https://cve.org/CVERecord?id=CVE-2024-26760
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-26760.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-26760
Downstream
Related
Published
2024-04-03T17:00:44.230Z
Modified
2026-03-23T04:59:45.402333967Z
Summary
scsi: target: pscsi: Fix bio_put() for error case
Details

In the Linux kernel, the following vulnerability has been resolved:

scsi: target: pscsi: Fix bio_put() for error case

As of commit 066ff571011d ("block: turn biokmalloc into a simple kmalloc wrapper"), a bio allocated by biokmalloc() must be freed by biouninit() and kfree(). That is not done properly for the error case, hitting WARN and NULL pointer dereference in biofree().

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/26xxx/CVE-2024-26760.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
066ff571011d8416e903d3d4f1f41e0b5eb91e1d
Fixed
f49b20fd0134da84a6bd8108f9e73c077b7d6231
Fixed
4ebc079f0c7dcda1270843ab0f38ab4edb8f7921
Fixed
1cfe9489fb563e9a0c9cdc5ca68257a44428c2ec
Fixed
de959094eb2197636f7c803af0943cb9d3b35804

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-26760.json"