CVE-2024-38617: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: kunit/fortify: Fix mismatched kvalloc()/vfree() usage The kv*() family of tests were accidentally freeing with vfree() instead of kvfree(). Use kvfree() instead.
Affected products
- Linux Linux Kernel: from 6.2, before 6.6.33 (fixed in 6.6.33); from 6.7, before 6.8.12 (fixed in 6.8.12); from 6.9, before 6.9.3 (fixed in 6.9.3)
Published 2024-06-19. Last modified 2026-06-17.