CVE-2024-57997

In the Linux kernel, the following vulnerability has been resolved: wifi: wcn36xx: fix channel survey memory allocation size KASAN reported a memory allocation issue in wcn->chan_survey due to incorrect size calculation. This commit uses kcalloc to allocate memory for wcn->chan_survey, ensuring proper initialization and preventing the use of uninitialized values when there are no frames on the channel.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

01 Oct 2025, 20:18

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux
Linux linux Kernel
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: wifi: wcn36xx: se corrige el tamaño de asignación de memoria de la encuesta de canal KASAN informó un problema de asignación de memoria en wcn->chan_survey debido a un cálculo de tamaño incorrecto. Esta confirmación utiliza kcalloc para asignar memoria para wcn->chan_survey, lo que garantiza una inicialización adecuada y evita el uso de valores no inicializados cuando no hay marcos en el canal.
CWE CWE-908
References () https://git.kernel.org/stable/c/34cd2817708aec51ef1a6c007e0d6d5342a025d7 - () https://git.kernel.org/stable/c/34cd2817708aec51ef1a6c007e0d6d5342a025d7 - Patch
References () https://git.kernel.org/stable/c/6200d947f050efdba4090dfefd8a01981363d954 - () https://git.kernel.org/stable/c/6200d947f050efdba4090dfefd8a01981363d954 - Patch
References () https://git.kernel.org/stable/c/64c4dcaeac1dc1030e47883b04a617ca9a4f164e - () https://git.kernel.org/stable/c/64c4dcaeac1dc1030e47883b04a617ca9a4f164e - Patch
References () https://git.kernel.org/stable/c/ae68efdff7a7a42ab251cac79d8713de6f0dbaa0 - () https://git.kernel.org/stable/c/ae68efdff7a7a42ab251cac79d8713de6f0dbaa0 - Patch
References () https://git.kernel.org/stable/c/e95f9c408ff8311f75eeabc8acf34a66670d8815 - () https://git.kernel.org/stable/c/e95f9c408ff8311f75eeabc8acf34a66670d8815 - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

27 Feb 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-27 02:15

Updated : 2025-10-01 20:18


NVD link : CVE-2024-57997

Mitre link : CVE-2024-57997

CVE.ORG link : CVE-2024-57997


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-908

Use of Uninitialized Resource