CVE-2024-41002: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec - Fix memory leak for sec resource release The AIV is one of the SEC resources. When releasing resources, it need to release the AIV resources at the same time. Otherwise, memory leakage occurs. The aiv resource release is added to the sec resource release function.

Affected products

  • Linux Linux Kernel: before 5.15.162 (fixed in 5.15.162); from 5.16, before 6.1.96 (fixed in 6.1.96); from 6.2, before 6.6.36 (fixed in 6.6.36); from 6.7, before 6.9.7 (fixed in 6.9.7)

Published 2024-07-12. Last modified 2026-06-17.