CVE-2024-56645

Source
https://cve.org/CVERecord?id=CVE-2024-56645
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56645.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-56645
Downstream
Related
Published
2024-12-27T15:02:46.531Z
Modified
2026-06-08T11:44:17.098214060Z
Summary
can: j1939: j1939_session_new(): fix skb reference counting
Details

In the Linux kernel, the following vulnerability has been resolved:

can: j1939: j1939sessionnew(): fix skb reference counting

Since j1939sessionskbqueue() does an extra skbget() for each new skb, do the same for the initial one in j1939sessionnew() to avoid refcount underflow.

[mkl: clean up commit message]

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/56xxx/CVE-2024-56645.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
9d71dd0c70099914fcd063135da3c580865e924c
Fixed
224e606a8d8e8c7db94036272c47a37455667313
Fixed
b3282c2bebeeb82ceec492ee4972f51ee7a4a132
Fixed
4199dd78a59896e091d3a7a05a77451aa7fd724d
Fixed
f117cba69cbbd496babb3defcdf440df4fd6fe14
Fixed
426d94815e12b6bdb9a75af294fbbafb9301601d
Fixed
68fceb143b635cdc59fed3896d5910aff38f345e
Fixed
a8c695005bfe6569acd73d777ca298ddddd66105

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56645.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.4.0
Fixed
5.4.287
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.231
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.174
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.120
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.66
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.5

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56645.json"