CVE-2024-24858: Debian Linux

Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A race condition was found in the Linux kernel's net/bluetooth in {conn,adv}_{min,max}_interval_set() function. This can result in I2cap connection or broadcast abnormality issue, possibly leading to denial of service.

Affected products

  • Debian Debian Linux: version 10.0 only
  • Linux Linux Kernel: up to and including 3.19.8; from 6.0, up to and including 6.6.25; from 6.7, up to and including 6.7.12; version 6.8 only

Published 2024-02-05. Last modified 2026-06-17.