CVE-2024-41002

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-41002
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-41002.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-41002
Downstream
Related
Published
2024-07-12T12:37:42.523Z
Modified
2025-11-28T02:35:18.475622Z
Summary
crypto: hisilicon/sec - Fix memory leak for sec resource release
Details

In the Linux kernel, the following vulnerability has been resolved:

crypto: hisilicon/sec - Fix memory leak for sec resource release

The AIV is one of the SEC resources. When releasing resources, it need to release the AIV resources at the same time. Otherwise, memory leakage occurs.

The aiv resource release is added to the sec resource release function.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/41xxx/CVE-2024-41002.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
416d82204df44ef727de6eafafeaa4d12fdc78dc
Fixed
a886bcb0f67d1e3d6b2da25b3519de59098200c2
Fixed
7c42ce556ff65995c8875c9ed64141c14238e7e6
Fixed
9f21886370db451b0fdc651f6e41550a1da70601
Fixed
36810d2db3496bb8b4db7ccda666674a5efc7b47
Fixed
bba4250757b4ae1680fea435a358d8093f254094

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.15.162
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.96
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.36
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.9.7