{"id":"DEBIAN-CVE-2024-35785","details":"In the Linux kernel, the following vulnerability has been resolved:  tee: optee: Fix kernel panic caused by incorrect error handling  The error path while failing to register devices on the TEE bus has a bug leading to kernel panic as follows:  [   15.398930] Unable to handle kernel paging request at virtual address ffff07ed00626d7c [   15.406913] Mem abort info: [   15.409722]   ESR = 0x0000000096000005 [   15.413490]   EC = 0x25: DABT (current EL), IL = 32 bits [   15.418814]   SET = 0, FnV = 0 [   15.421878]   EA = 0, S1PTW = 0 [   15.425031]   FSC = 0x05: level 1 translation fault [   15.429922] Data abort info: [   15.432813]   ISV = 0, ISS = 0x00000005, ISS2 = 0x00000000 [   15.438310]   CM = 0, WnR = 0, TnD = 0, TagAccess = 0 [   15.443372]   GCS = 0, Overlay = 0, DirtyBit = 0, Xs = 0 [   15.448697] swapper pgtable: 4k pages, 48-bit VAs, pgdp=00000000d9e3e000 [   15.455413] [ffff07ed00626d7c] pgd=1800000bffdf9003, p4d=1800000bffdf9003, pud=0000000000000000 [   15.464146] Internal error: Oops: 0000000096000005 [#1] PREEMPT SMP  Commit 7269cba53d90 (\"tee: optee: Fix supplicant based device enumeration\") lead to the introduction of this bug. So fix it appropriately.","modified":"2026-09-15T09:03:13.878313929Z","published":"2024-05-17T13:15:58.403Z","upstream":["CVE-2024-35785"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2024-35785"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.85-1"}]}],"versions":["6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1","6.1.52-1","6.1.55-1","6.1.55-1~bpo11+1","6.1.64-1","6.1.66-1","6.1.67-1","6.1.69-1","6.1.69-1~bpo11+1","6.1.76-1","6.1.76-1~bpo11+1","6.1.82-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-35785.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.7.12-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-35785.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.7.12-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-35785.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H"}]}