ID

VAR-202405-3608


CVE

CVE-2024-36940


TITLE

Linux  of  Linux Kernel  Double release vulnerability in products from multiple vendors such as

Trust: 0.8

sources: JVNDB: JVNDB-2024-016593

DESCRIPTION

In the Linux kernel, the following vulnerability has been resolved: pinctrl: core: delete incorrect free in pinctrl_enable() The "pctldev" struct is allocated in devm_pinctrl_register_and_init(). It's a devm_ managed pointer that is freed by devm_pinctrl_dev_release(), so freeing it in pinctrl_enable() will lead to a double free. The devm_pinctrl_dev_release() function frees the pindescs and destroys the mutex as well. Linux of Linux Kernel Products from multiple vendors, such as the following, contain vulnerabilities related to double frees.Information is obtained, information is tampered with, and service operation is interrupted. (DoS) It may be in a state. The RUGGEDCOM RST2428P is a Layer 2 Ethernet switch based on the SINEC operating system with up to 28 non-blocking interfaces. SCALANCE X switches are used to connect industrial components such as programmable logic controllers (PLCs) or human-machine interfaces (HMIs). Multiple vulnerabilities in third-party components of Siemens' SINEC OS could allow attackers to gain control of the server. ========================================================================== Ubuntu Security Notice USN-6972-1 August 21, 2024 linux, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: - linux: Linux kernel - linux-gcp-4.15: Linux kernel for Google Cloud Platform (GCP) systems - linux-kvm: Linux kernel for cloud environments - linux-gcp: Linux kernel for Google Cloud Platform (GCP) systems - linux-hwe: Linux hardware enablement (HWE) kernel Details: Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux Kernel contained a race condition, leading to a NULL pointer dereference. An attacker could possibly use this to cause a denial of service (system crash). (CVE-2024-22099) It was discovered that a race condition existed in the Bluetooth subsystem in the Linux kernel, leading to a null pointer dereference vulnerability. A privileged local attacker could use this to possibly cause a denial of service (system crash). (CVE-2024-24860) Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - SuperH RISC architecture; - User-Mode Linux (UML); - GPU drivers; - MMC subsystem; - Network drivers; - PHY drivers; - Pin controllers subsystem; - Xen hypervisor drivers; - GFS2 file system; - Core kernel; - Bluetooth subsystem; - IPv4 networking; - IPv6 networking; - HD-audio driver; - ALSA SH drivers; (CVE-2024-26903, CVE-2024-35835, CVE-2023-52644, CVE-2024-39292, CVE-2024-36940, CVE-2024-26600, CVE-2023-52629, CVE-2024-35955, CVE-2023-52760, CVE-2023-52806, CVE-2024-39484, CVE-2024-26679, CVE-2024-26654, CVE-2024-36901, CVE-2024-26687, CVE-2023-52470) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS linux-image-4.15.0-1155-kvm 4.15.0-1155.160 Available with Ubuntu Pro linux-image-4.15.0-1165-gcp 4.15.0-1165.182 Available with Ubuntu Pro linux-image-4.15.0-228-generic 4.15.0-228.240 Available with Ubuntu Pro linux-image-4.15.0-228-lowlatency 4.15.0-228.240 Available with Ubuntu Pro linux-image-gcp-lts-18.04 4.15.0.1165.178 Available with Ubuntu Pro linux-image-generic 4.15.0.228.212 Available with Ubuntu Pro linux-image-kvm 4.15.0.1155.146 Available with Ubuntu Pro linux-image-lowlatency 4.15.0.228.212 Available with Ubuntu Pro linux-image-virtual 4.15.0.228.212 Available with Ubuntu Pro Ubuntu 16.04 LTS linux-image-4.15.0-1165-gcp 4.15.0-1165.182~16.04.1 Available with Ubuntu Pro linux-image-4.15.0-228-generic 4.15.0-228.240~16.04.1 Available with Ubuntu Pro linux-image-4.15.0-228-lowlatency 4.15.0-228.240~16.04.1 Available with Ubuntu Pro linux-image-gcp 4.15.0.1165.182~16.04.1 Available with Ubuntu Pro linux-image-generic-hwe-16.04 4.15.0.228.240~16.04.1 Available with Ubuntu Pro linux-image-gke 4.15.0.1165.182~16.04.1 Available with Ubuntu Pro linux-image-lowlatency-hwe-16.04 4.15.0.228.240~16.04.1 Available with Ubuntu Pro linux-image-oem 4.15.0.228.240~16.04.1 Available with Ubuntu Pro linux-image-virtual-hwe-16.04 4.15.0.228.240~16.04.1 Available with Ubuntu Pro After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well. References: https://ubuntu.com/security/notices/USN-6972-1 CVE-2023-52470, CVE-2023-52629, CVE-2023-52644, CVE-2023-52760, CVE-2023-52806, CVE-2024-22099, CVE-2024-24860, CVE-2024-26600, CVE-2024-26654, CVE-2024-26679, CVE-2024-26687, CVE-2024-26903, CVE-2024-35835, CVE-2024-35955, CVE-2024-36901, CVE-2024-36940, CVE-2024-39292, CVE-2024-39484

Trust: 2.52

sources: NVD: CVE-2024-36940 // JVNDB: JVNDB-2024-016593 // CNVD: CNVD-2025-19346 // PACKETSTORM: 180322 // PACKETSTORM: 180332 // PACKETSTORM: 180368 // PACKETSTORM: 180455

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2025-19346

AFFECTED PRODUCTS

vendor:linuxmodel:kernelscope:eqversion:6.9

Trust: 1.8

vendor:linuxmodel:kernelscope:gteversion:5.11

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.15.159

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:4.20

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.5

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:4.19.314

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.1.91

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:6.2

Trust: 1.0

vendor:debianmodel:linuxscope:eqversion:10.0

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:4.11

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:5.16

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.4.276

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.6.31

Trust: 1.0

vendor:linuxmodel:kernelscope:gteversion:6.7

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:6.8.10

Trust: 1.0

vendor:linuxmodel:kernelscope:ltversion:5.10.217

Trust: 1.0

vendor:linuxmodel:kernelscope:eqversion:6.2 that's all 6.6.31

Trust: 0.8

vendor:debianmodel:gnu/linuxscope: - version: -

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:4.20 that's all 5.4.276

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:6.7 that's all 6.8.10

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.16 that's all 6.1.91

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:4.11 that's all 4.19.314

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.11 that's all 5.15.159

Trust: 0.8

vendor:linuxmodel:kernelscope:eqversion:5.5 that's all 5.10.217

Trust: 0.8

vendor:siemensmodel:ruggedcom rst2428pscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xc-300/xr-300/xc-400/xr-500wg/xr-500 familyscope:ltversion:v3.1

Trust: 0.6

vendor:siemensmodel:scalance xcm-/xrm-/xch-/xrh-300 familyscope:ltversion:v3.1

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // JVNDB: JVNDB-2024-016593 // NVD: CVE-2024-36940

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2024-36940
value: HIGH

Trust: 1.0

NVD: CVE-2024-36940
value: HIGH

Trust: 0.8

CNVD: CNVD-2025-19346
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-19346
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

nvd@nist.gov: CVE-2024-36940
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2024-36940
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: CNVD: CNVD-2025-19346 // JVNDB: JVNDB-2024-016593 // NVD: CVE-2024-36940

PROBLEMTYPE DATA

problemtype:CWE-415

Trust: 1.0

problemtype:Double release (CWE-415) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2024-016593 // NVD: CVE-2024-36940

THREAT TYPE

local

Trust: 0.4

sources: PACKETSTORM: 180322 // PACKETSTORM: 180332 // PACKETSTORM: 180368 // PACKETSTORM: 180455

PATCH

title:Linux Kernel Archivesurl:https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html

Trust: 0.8

title:Patch for Multiple vulnerabilities in Siemens SINEC OS third-party componentsurl:https://www.cnvd.org.cn/patchInfo/show/723071

Trust: 0.6

sources: CNVD: CNVD-2025-19346 // JVNDB: JVNDB-2024-016593

EXTERNAL IDS

db:NVDid:CVE-2024-36940

Trust: 3.0

db:SIEMENSid:SSA-613116

Trust: 1.6

db:SIEMENSid:SSA-265688

Trust: 1.0

db:JVNDBid:JVNDB-2024-016593

Trust: 0.8

db:CNVDid:CNVD-2025-19346

Trust: 0.6

db:PACKETSTORMid:180322

Trust: 0.1

db:PACKETSTORMid:180332

Trust: 0.1

db:PACKETSTORMid:180368

Trust: 0.1

db:PACKETSTORMid:180455

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // PACKETSTORM: 180322 // PACKETSTORM: 180332 // PACKETSTORM: 180368 // PACKETSTORM: 180455 // JVNDB: JVNDB-2024-016593 // NVD: CVE-2024-36940

REFERENCES

url:https://cert-portal.siemens.com/productcert/html/ssa-613116.html

Trust: 1.6

url:https://nvd.nist.gov/vuln/detail/cve-2024-36940

Trust: 1.2

url:https://git.kernel.org/stable/c/5038a66dad0199de60e5671603ea6623eb9e5c79

Trust: 1.0

url:https://git.kernel.org/stable/c/288bc4aa75f150d6f1ee82dd43c6da1b438b6068

Trust: 1.0

url:https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html

Trust: 1.0

url:https://git.kernel.org/stable/c/735f4c6b6771eafe336404c157ca683ad72a040d

Trust: 1.0

url:https://git.kernel.org/stable/c/ac7d65795827dc0cf7662384ed27caf4066bd72e

Trust: 1.0

url:https://git.kernel.org/stable/c/41f88ef8ba387a12f4a2b8c400b6c9e8e54b2cca

Trust: 1.0

url:https://git.kernel.org/stable/c/f9f1e321d53e4c5b666b66e5b43da29841fb55ba

Trust: 1.0

url:https://cert-portal.siemens.com/productcert/html/ssa-265688.html

Trust: 1.0

url:https://git.kernel.org/stable/c/cdaa171473d98962ae86f2a663d398fda2fbeefd

Trust: 1.0

url:https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html

Trust: 1.0

url:https://git.kernel.org/stable/c/558c8039fdf596a584a92c171cbf3298919c448c

Trust: 1.0

url:https://nvd.nist.gov/vuln/detail/cve-2023-52806

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-39292

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-26600

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-22099

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-35835

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2023-52760

Trust: 0.4

url:https://ubuntu.com/security/notices/usn-6972-1

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-26654

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-36901

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2024-24860

Trust: 0.4

url:https://nvd.nist.gov/vuln/detail/cve-2023-52470

Trust: 0.4

url:https://ubuntu.com/security/notices/usn-6972-2

Trust: 0.3

url:https://ubuntu.com/security/notices/usn-6972-3

Trust: 0.2

url:https://ubuntu.com/security/notices/usn-6972-4

Trust: 0.1

sources: CNVD: CNVD-2025-19346 // PACKETSTORM: 180322 // PACKETSTORM: 180332 // PACKETSTORM: 180368 // PACKETSTORM: 180455 // JVNDB: JVNDB-2024-016593 // NVD: CVE-2024-36940

CREDITS

Ubuntu

Trust: 0.4

sources: PACKETSTORM: 180322 // PACKETSTORM: 180332 // PACKETSTORM: 180368 // PACKETSTORM: 180455

SOURCES

db:CNVDid:CNVD-2025-19346
db:PACKETSTORMid:180322
db:PACKETSTORMid:180332
db:PACKETSTORMid:180368
db:PACKETSTORMid:180455
db:JVNDBid:JVNDB-2024-016593
db:NVDid:CVE-2024-36940

LAST UPDATE DATE

2026-06-18T20:43:23.710000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-22T00:00:00
db:JVNDBid:JVNDB-2024-016593date:2025-01-16T05:48:00
db:NVDid:CVE-2024-36940date:2026-05-12T12:16:50.733

SOURCES RELEASE DATE

db:CNVDid:CNVD-2025-19346date:2025-08-12T00:00:00
db:PACKETSTORMid:180322date:2024-08-22T14:45:28
db:PACKETSTORMid:180332date:2024-08-22T14:50:59
db:PACKETSTORMid:180368date:2024-08-26T14:31:30
db:PACKETSTORMid:180455date:2024-08-29T14:11:56
db:JVNDBid:JVNDB-2024-016593date:2025-01-16T00:00:00
db:NVDid:CVE-2024-36940date:2024-05-30T16:15:17.063