CVE-2024-38627

Source
https://cve.org/CVERecord?id=CVE-2024-38627
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-38627.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-38627
Downstream
Related
Published
2024-06-21T10:18:18.912Z
Modified
2026-03-23T05:12:54.824889984Z
Summary
stm class: Fix a double free in stm_register_device()
Details

In the Linux kernel, the following vulnerability has been resolved:

stm class: Fix a double free in stmregisterdevice()

The putdevice(&stm->dev) call will trigger stmdevice_release() which frees "stm" so the vfree(stm) on the next line is a double free.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/38xxx/CVE-2024-38627.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
389b6699a2aa0b457aa69986e9ddf39f3b4030fd
Fixed
6cc30ef8eb6d8f8d6df43152264bbf8835d99931
Fixed
a0450d3f38e7c6c0a7c0afd4182976ee15573695
Fixed
713fc00c571dde4af3db2dbd5d1b0eadc327817b
Fixed
7419df1acffbcc90037f6b5a2823e81389659b36
Fixed
4bfd48bb6e62512b9c392c5002c11e1e3b18d247
Fixed
370c480410f60b90ba3e96abe73ead21ec827b20
Fixed
d782a2db8f7ac49c33b9ca3e835500a28667d1be
Fixed
3df463865ba42b8f88a590326f4c9ea17a1ce459
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
b0351a51ffda593b2b1b35dd0c00a73505edb256

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-38627.json"