CVE-2024-49853

Source
https://cve.org/CVERecord?id=CVE-2024-49853
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49853.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-49853
Downstream
Related
Published
2024-10-21T12:18:46.093Z
Modified
2026-05-07T04:18:08.616606Z
Summary
firmware: arm_scmi: Fix double free in OPTEE transport
Details

In the Linux kernel, the following vulnerability has been resolved:

firmware: arm_scmi: Fix double free in OPTEE transport

Channels can be shared between protocols, avoid freeing the same channel descriptors twice when unloading the stack.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/49xxx/CVE-2024-49853.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
5f90f189a052f6fc46048f6ce29a37b709548b81
Fixed
d7f4fc2bc101e666da649605a9ece2bd42529c7a
Fixed
6699567b0bbb378600a4dc0a1f929439a4e84a2c
Fixed
dc9543a4f2a5498a4a12d6d2427492a6f1a28056
Fixed
aef6ae124bb3cc12e34430fed91fbb7efd7a444d
Fixed
e98dba934b2fc587eafb83f47ad64d9053b18ae0

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49853.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.18.0
Fixed
6.1.113
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.54
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.10.13
Type
ECOSYSTEM
Events
Introduced
6.11.0
Fixed
6.11.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49853.json"