CVE-2024-26843 — Out-of-bounds Write in Linux
Severity
6.0MEDIUMNVD
OSV7.0OSV6.5OSV5.5
EPSS
0.0%
top 99.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 17
Latest updateJul 26
Description
In the Linux kernel, the following vulnerability has been resolved:
efi: runtime: Fix potential overflow of soft-reserved region size
md_size will have been narrowed if we have >= 4GB worth of pages in a
soft-reserved region.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:HExploitability: 0.8 | Impact: 5.2
Affected Packages5 packages
▶CVEListV5linux/linux16993c0f0a43213e23666ea40e9163887f593ac7 — 4fff3d735baea104017f2e3c245e27cdc79f2426+6
Also affects: Debian Linux 10.0
Patches
🔴Vulnerability Details
12📋Vendor Advisories
12💬Community
1Bugzilla
▶