
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2024-27052 affects the Linux kernel's rtl8xxxu WiFi driver. The vulnerability was discovered and disclosed on May 1, 2024, and involves a potential use-after-free condition in the driver's workqueue handling. The issue specifically affects the rtl8xxxu driver when it is stopped while the workqueue is still running (NVD).
The vulnerability occurs when the rtl8xxxu driver's workqueue (c2hcmd_work) might still be running when the driver is stopped, leading to a potential use-after-free condition. The issue stems from not properly canceling the workqueue before stopping the driver. The vulnerability has been assigned a CVSS v3.1 base score of 7.4 (HIGH) with the vector string CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H and is classified as CWE-416 (Use After Free) (NVD).
If exploited, this vulnerability could lead to a use-after-free condition in the Linux kernel's rtl8xxxu WiFi driver, potentially resulting in system crashes, privilege escalation, or unauthorized access to kernel memory (NVD).
The vulnerability requires local access and high complexity to exploit, with no privileges or user interaction required. There are no known reports of this vulnerability being exploited in the wild (CISA-ADP).
The vulnerability has been fixed by adding cancel_work_sync() for c2hcmd_work in the rtl8xxxu_stop() function. The fix has been implemented in various Linux kernel versions, including 5.15.0-1063.69 for Ubuntu 22.04 LTS and 6.8.0-35.35 for Ubuntu 24.04 LTS (Ubuntu).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."