We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-49851

tpm: Clean up TPM space after command failure



Description

In the Linux kernel, the following vulnerability has been resolved: tpm: Clean up TPM space after command failure tpm_dev_transmit prepares the TPM space before attempting command transmission. However if the command fails no rollback of this preparation is done. This can result in transient handles being leaked if the device is subsequently closed with no further commands performed. Fix this by flushing the space in the event of command transmission failure.

Reserved 2024-10-21 | Published 2024-10-21 | Updated 2024-12-19 | Assigner Linux

Product status

Default status
unaffected

745b361e989af21ad40811c2586b60229f870a68 before 87e8134c18977b566f4ec248c8a147244da69402
affected

745b361e989af21ad40811c2586b60229f870a68 before 2c9b228938e9266a1065a3f4fe5c99b7235dc439
affected

745b361e989af21ad40811c2586b60229f870a68 before ebc4e1f4492d114f9693950621b3ea42b2f82bec
affected

745b361e989af21ad40811c2586b60229f870a68 before c84ceb546f30432fccea4891163f7050f5bee5dd
affected

745b361e989af21ad40811c2586b60229f870a68 before 82478cb8a23bd4f97935bbe60d64528c6d9918b4
affected

745b361e989af21ad40811c2586b60229f870a68 before adf4ce162561222338cf2c9a2caa294527f7f721
affected

745b361e989af21ad40811c2586b60229f870a68 before 3f9f72d843c92fb6f4ff7460d774413cde7f254c
affected

745b361e989af21ad40811c2586b60229f870a68 before e3aaebcbb7c6b403416f442d1de70d437ce313a7
affected

Default status
affected

4.12
affected

Any version before 4.12
unaffected

5.4.285
unaffected

5.10.227
unaffected

5.15.168
unaffected

6.1.113
unaffected

6.6.54
unaffected

6.10.13
unaffected

6.11.2
unaffected

6.12
unaffected

References

git.kernel.org/...c/87e8134c18977b566f4ec248c8a147244da69402

git.kernel.org/...c/2c9b228938e9266a1065a3f4fe5c99b7235dc439

git.kernel.org/...c/ebc4e1f4492d114f9693950621b3ea42b2f82bec

git.kernel.org/...c/c84ceb546f30432fccea4891163f7050f5bee5dd

git.kernel.org/...c/82478cb8a23bd4f97935bbe60d64528c6d9918b4

git.kernel.org/...c/adf4ce162561222338cf2c9a2caa294527f7f721

git.kernel.org/...c/3f9f72d843c92fb6f4ff7460d774413cde7f254c

git.kernel.org/...c/e3aaebcbb7c6b403416f442d1de70d437ce313a7

cve.org (CVE-2024-49851)

nvd.nist.gov (CVE-2024-49851)

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-49851

Support options

Helpdesk Chat, Email, Knowledgebase
Telegram Chat
Subscribe to our newsletter to learn more about our work.