← Back

CVE-2024-56766

nvd nist
Published: Jan 6, 2025Modified: Nov 3, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

In the Linux kernel, the following vulnerability has been resolved: mtd: rawnand: fix double free in atmel_pmecc_create_user() The "user" pointer was converted from being allocated with kzalloc() to being allocated by devm_kzalloc(). Calling kfree(user) will lead to a double free.

Affected (12)

Products: Linux: Linux Kernel
1 product
Linux Kernel
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Linux
From 4.19.325 to 4.20
From 5.10.231 to 5.11
From 5.15.174 to 5.16
From 5.4.287 to 5.5
From 6.1.120 to 6.1.123
From 6.11.11 to 6.12
From 6.12.2 to 6.12.8
From 6.6.64 to 6.6.69
Version 6.13 rc1
Version 6.13 rc2
Version 6.13 rc3
Version 6.13 rc4

References (9)

Timeline

No history available yet.