CVE-2024-50124

Source
https://cve.org/CVERecord?id=CVE-2024-50124
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50124.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-50124
Downstream
Related
Published
2024-11-05T17:10:52.434Z
Modified
2026-05-18T05:57:18.664685872Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
Bluetooth: ISO: Fix UAF on iso_sock_timeout
Details

In the Linux kernel, the following vulnerability has been resolved:

Bluetooth: ISO: Fix UAF on isosocktimeout

conn->sk maybe have been unlinked/freed while waiting for isoconnlock so this checks if the conn->sk is still valid by checking if it part of isosklist.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/50xxx/CVE-2024-50124.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
ccf74f2390d60a2f9a75ef496d2564abb478f46a
Fixed
876ac72d535fa94f4ac57bba651987c6f990f646
Fixed
14bcb721d241e62fdd18f6f434a2ed2ab6e71a9b
Fixed
d75aad1d3143ca68cda52ff80ac392e1bbd84325
Fixed
246b435ad668596aa0e2bbb9d491b6413861211a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50124.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.0.0
Fixed
6.1.115
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.59
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.11.6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50124.json"