CVE-2024-35996 — Linux vulnerability
15 documents7 sources
Severity
5.5MEDIUMNVD
OSV6.5
EPSS
0.0%
top 89.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 20
Latest updateAug 13
Description
In the Linux kernel, the following vulnerability has been resolved:
cpu: Re-enable CPU mitigations by default for !X86 architectures
Rename x86's to CPU_MITIGATIONS, define it in generic code, and force it
on for all architectures exception x86. A recent commit to turn
mitigations off by default if SPECULATION_MITIGATIONS=n kinda sorta
missed that "cpu_mitigations" is completely generic, whereas
SPECULATION_MITIGATIONS is x86-specific.
Rename x86's SPECULATIVE_MITIGATIONS instead of keeping b…
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6
Affected Packages5 packages
▶CVEListV5linux/linux30da4180fd768973189dc364648f9c436e57b01d — af6d6a923b40bf6471e44067ac61cc5814b48e7f+9
Also affects: Debian Linux 10.0
Patches
🔴Vulnerability Details
7OSV▶
linux, linux-aws, linux-gcp, linux-gke, linux-ibm, linux-nvidia, linux-nvidia-6.8 vulnerabilities↗2024-08-08
📋Vendor Advisories
6💬Community
1Bugzilla
▶