CVE-2024-41073

Source
https://cve.org/CVERecord?id=CVE-2024-41073
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-41073.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-41073
Downstream
Related
Published
2024-07-29T14:57:33.253Z
Modified
2026-05-07T04:17:47.073022Z
Summary
nvme: avoid double free special payload
Details

In the Linux kernel, the following vulnerability has been resolved:

nvme: avoid double free special payload

If a discard request needs to be retried, and that retry may fail before a new special payload is added, a double free will result. Clear the RQFSPECIALLOAD when the request is cleaned.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/41xxx/CVE-2024-41073.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f9d03f96b988002027d4b28ea1b7a24729a4c9b5
Fixed
882574942a9be8b9d70d13462ddacc80c4b385ba
Fixed
c5942a14f795de957ae9d66027aac8ff4fe70057
Fixed
f3ab45aacd25d957547fb6d115c1574c20964b3b
Fixed
ae84383c96d6662c24697ab6b44aae855ab670aa
Fixed
1b9fd1265fac85916f90b4648de02adccdb7220b
Fixed
e5d574ab37f5f2e7937405613d9b1a724811e5ad

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-41073.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.10.0
Fixed
5.10.237
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.164
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.101
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.42
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.9.11

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-41073.json"