CVE-2024-43883

Source
https://cve.org/CVERecord?id=CVE-2024-43883
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-43883.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-43883
Downstream
Related
Published
2024-08-23T13:08:10.508Z
Modified
2026-03-11T07:49:21.368282Z
Summary
usb: vhci-hcd: Do not drop references before new references are gained
Details

In the Linux kernel, the following vulnerability has been resolved:

usb: vhci-hcd: Do not drop references before new references are gained

At a few places the driver carries stale pointers to references that can still be used. Make sure that does not happen. This strictly speaking closes ZDI-CAN-22273, though there may be similar races in the driver.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/43xxx/CVE-2024-43883.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
7606ee8aa33287dd3e6eb44c78541b87a413a325
Fixed
5a3c473b28ae1c1f7c4dc129e30cb19ae6e96f89
Fixed
9c3746ce8d8fcb3a2405644fc0eec7fc5312de80
Fixed
4dacdb9720aaab10b6be121eae55820174d97174
Fixed
e8c1e606dab8c56cf074b43b98d0805de7322ba2
Fixed
585e6bc7d0a9bf73a8be3d3fb34e86b90cc61a14
Fixed
128e82e41cf7d74a562726c1587d9d2ede1a0a37
Fixed
c3d0857b7fc2c49f68f89128a5440176089a8f54
Fixed
afdcfd3d6fcdeca2735ca8d994c5f2d24a368f0a
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
96ea4801d2035f89fc4ec4a67f49a18c35cb6715
Last affected
075b4e6a982d38121250c090f7b9294314ac1b19
Last affected
436e52f1a628233f080605dd736594df250897ca
Last affected
1c8d316294916da7e2a2f1f178ca3f3bd6d7b531
Last affected
927c3fa44e24300eb827ab9f9dacce6dff9c9bb7

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-43883.json"