CVE-2024-27043·Kernel vulnerability
In the Linux kernel, the following vulnerability has been resolved: media: edia: dvbdev: fix a use-after-free In dvb_register_device, *pdvbdev is set equal to dvbdev, which is freed in several error-handling paths. However, *pdvbdev is not set to NULL after dvbdev's deallocation, causing use-after-frees in many places, for example, in the following call chain: budget_register |-> dvb_dmxdev_init |-> dvb_register_device |-> dvb_dmxdev_release |-> dvb_unregister_device |-> dvb_remove_device |-> dvb_device_put |-> kref_put When calling dvb_unregister_device, dmxdev->dvbdev (i.e. *pdvbdev in dvb_register_device) could point to memory that had been freed in dvb_register_device. Thereafter, this pointer is transferred to kref_put and triggering a use-after-free.
- Severity
- high
- Software
- Kernel
- Fixed in
- 6.8.2
- Published
- 2024-05-01
Affected versions
From: 6.8
Until: 6.8.2
Fixed in: 6.8.2
How to fix this CVE
Update your Linux kernel to version 6.8.2 or later to resolve this use-after-free vulnerability in the DVB device registration subsystem. The vulnerability occurs when error paths in dvb_register_device fail to null-check device pointers, leading to potential memory access violations during device unregistration. Apply the latest stable kernel patches immediately, particularly if your system uses DVB (Digital Video Broadcasting) hardware or drivers.
sudo dnf upgrade kernel kernel-headers kernel-develDefensia detects this vulnerability
How to check if you are affected
- Step 1: Check installed kernel version with `uname -r` and verify it is 6.8.2 or later
- Step 2: Confirm DVB subsystem is loaded by running `lsmod | grep -i dvb` to identify if media drivers are in use
- Step 3: Search system logs for use-after-free warnings with `sudo dmesg | grep -i 'use-after-free\|dvb\|kref'` or check `/var/log/kern.log` for related errors
- Step 4: After applying patches, verify the new kernel version with `uname -r` and reboot if necessary to activate the fix
FAQ
What is CVE-2024-27043?
CVE-2024-27043 is a use-after-free vulnerability in the Linux kernel's DVB device management code where error handling paths fail to clear device pointers, allowing subsequent operations to access freed memory and potentially crash the system or execute arbitrary code.
Is CVE-2024-27043 being actively exploited?
No, CVE-2024-27043 is not currently listed as actively exploited by CISA, and no public exploits have been disclosed. However, it remains a high-severity vulnerability that should be patched promptly.
What versions of Kernel are affected by CVE-2024-27043?
Kernel versions 6.8 through 6.8.2 are affected. The vulnerability was resolved in version 6.8.2 and later stable releases.
How do I check if my server is vulnerable to CVE-2024-27043?
Run `uname -r` to display your kernel version; if it shows 6.8.0, 6.8.1, or 6.8.2 (without a higher patch level), your system is vulnerable. Cross-reference against your distribution's security advisories for the exact patched version available.
Does Defensia detect CVE-2024-27043?
Yes — Defensia's CVE advisory scanner compares installed package versions against the NVD database. If the Linux kernel is installed on a monitored server, CVE-2024-27043 will appear in your dashboard with remediation steps.
Related Kernel CVEs
References
- https://git.kernel.org/stable/c/096237039d00c839f3e3a5fe6d001bf0db45b644
- https://git.kernel.org/stable/c/0d3fe80b6d175c220b3e252efc6c6777e700e98e
- https://git.kernel.org/stable/c/35674111a043b0482a9bc69da8850a83f465b07d
- https://git.kernel.org/stable/c/437a111f79a2f5b2a5f21e27fdec6f40c8768712
- https://git.kernel.org/stable/c/779e8db7efb22316c8581d6c229636d2f5694a62
Track CVEs across your fleet automatically
Defensia scans your Linux servers and tells you exactly which ones are running vulnerable versions — including CVE-2024-27043. Free for 1 server.
Get started free