CVE-2024-26860

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-26860
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-26860.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-26860
Downstream
Related
Published
2024-04-17T10:27:24Z
Modified
2025-10-14T14:50:46.164295Z
Summary
dm-integrity: fix a memory leak when rechecking the data
Details

In the Linux kernel, the following vulnerability has been resolved:

dm-integrity: fix a memory leak when rechecking the data

Memory for the "checksums" pointer will leak if the data is rechecked after checksum failure (because the associated kfree won't happen due to 'goto skip_io').

Fix this by freeing the checksums memory before recheck, and just use the "checksum_onstack" memory for storing checksum during recheck.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
906414f4596469004632de29126c55751ed82c5e
Fixed
20e21c3c0195d915f33bc7321ee6b362177bf5bf
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d6824a28b244e8a750952848e4bd2167e1e9a17e
Fixed
338580a7fb9b0930bb38098007e89cc0fc496bf7
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
eb7b14a6a923c5678573c4d238c781cc83fcbc0f
Fixed
74abc2fe09691f3d836d8a54d599ca71f1e4287b
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c88f5e553fe38b2ffc4c33d08654e5281b297677
Fixed
6d35654f03c35c273240d85ec67e3f2c3596c4e0
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c88f5e553fe38b2ffc4c33d08654e5281b297677
Fixed
55e565c42dce81a4e49c13262d5bc4eb4c2e588a

Affected versions

v6.*

v6.1.80
v6.1.81
v6.1.82
v6.6.19
v6.6.20
v6.6.21
v6.6.22
v6.7.10
v6.7.7
v6.7.8
v6.7.9
v6.8
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.8.1

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.83
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.23
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.7.11
Type
ECOSYSTEM
Events
Introduced
6.8.0
Fixed
6.8.2