CVE-2024-38630

watchdog: cpu5wdt.c: Fix use-after-free bug caused by cpu5wdt_trigger

References

Notes

 carnil> Introduced in e09d9c3e9f85 ("watchdog: cpu5wdt.c: add missing del_timer call").
 carnil> Vulnerable versions: 3.8-rc1.

Bugs

Status

Branch Status
upstream released (6.10-rc1) [573601521277119f2e2ba5f28ae6e87fc594f4d4]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.9-upstream-stable released (6.9.4) [f19686d616500cd0d47b30cee82392b53f7f784a]
6.6-upstream-stable released (6.6.33) [9b1c063ffc075abf56f63e55d70b9778ff534314]
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.9.7-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed