net/tcp_ao: Don't leak ao_info on error-path
It seems I introduced it together with TCP_AO_CMDF_AO_REQUIRED, on
version 5 [1] of TCP-AO patches. Quite frustrative that having all these
selftests that I've written, running kmemtest & kcov was always in todo.
[1]: https://lore.kernel.org/netdev/20230215183335.800122-5-dima@arista.com/
Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
USN-6999-1 | Linux kernel vulnerabilities |
![]() |
USN-6999-2 | Linux kernel vulnerabilities |
![]() |
USN-7004-1 | Linux kernel vulnerabilities |
![]() |
USN-7005-1 | Linux kernel vulnerabilities |
![]() |
USN-7005-2 | Linux kernel vulnerabilities |
![]() |
USN-7008-1 | Linux kernel vulnerabilities |
![]() |
USN-7029-1 | Linux kernel vulnerabilities |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 06 Oct 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.10:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.10:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.10:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.10:rc4:*:*:*:*:*:* |
|
Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 06 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 12 Sep 2024 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 11 Sep 2024 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 14 Aug 2024 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-402 | |
Metrics |
cvssV3_1
|
cvssV3_1
|

Status: PUBLISHED
Assigner: Linux
Published:
Updated: 2025-05-04T09:19:22.334Z
Reserved: 2024-07-12T12:17:45.605Z
Link: CVE-2024-40985

Updated: 2024-08-02T04:39:56.072Z

Status : Analyzed
Published: 2024-07-12T13:15:20.050
Modified: 2025-10-06T20:17:31.530
Link: CVE-2024-40985


Updated: 2025-07-13T21:06:52Z