CVE-2024-57997

Source
https://cve.org/CVERecord?id=CVE-2024-57997
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-57997.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-57997
Downstream
Related
Published
2025-02-27T02:07:17.371Z
Modified
2026-05-28T03:53:56.387636872Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
wifi: wcn36xx: fix channel survey memory allocation size
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: wcn36xx: fix channel survey memory allocation size

KASAN reported a memory allocation issue in wcn->chansurvey due to incorrect size calculation. This commit uses kcalloc to allocate memory for wcn->chansurvey, ensuring proper initialization and preventing the use of uninitialized values when there are no frames on the channel.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/57xxx/CVE-2024-57997.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
29696e0aa413b9d56558731aae3806d7cff48d36
Fixed
ae68efdff7a7a42ab251cac79d8713de6f0dbaa0
Fixed
e95f9c408ff8311f75eeabc8acf34a66670d8815
Fixed
64c4dcaeac1dc1030e47883b04a617ca9a4f164e
Fixed
34cd2817708aec51ef1a6c007e0d6d5342a025d7
Fixed
6200d947f050efdba4090dfefd8a01981363d954

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-57997.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.18.0
Fixed
6.1.129
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.76
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.13
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.13.2

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-57997.json"