cbcvebase.
CVE-2024-42267
published 2024-08-17

CVE-2024-42267: In the Linux kernel, the following vulnerability has been resolved: riscv/mm: Add handling for VM_FAULT_SIGSEGV in mm_fault_error() Handle VM_FAULT_SIGSEGV in…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
13.3th percentile
In the Linux kernel, the following vulnerability has been resolved: riscv/mm: Add handling for VM_FAULT_SIGSEGV in mm_fault_error() Handle VM_FAULT_SIGSEGV in the page fault path so that we correctly kill the process and we don't BUG() the kernel.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 07037db5d479f90377c998259a4f9a469c404edf < 59be4a167782d68e21068a761b90b01fadc0914659be4a167782d68e21068a761b90b01fadc09146
linuxlinux>= 07037db5d479f90377c998259a4f9a469c404edf < 20dbdebc5580cd472a310d56a6e252275ee4c86420dbdebc5580cd472a310d56a6e252275ee4c864
linuxlinux>= 07037db5d479f90377c998259a4f9a469c404edf < d7ccf2ca772bfe33e2c53ef80fa20d2d87eb6144d7ccf2ca772bfe33e2c53ef80fa20d2d87eb6144
linuxlinux>= 07037db5d479f90377c998259a4f9a469c404edf < 917f598209f3f5e4ab175d5079d8aeb523e58b1f917f598209f3f5e4ab175d5079d8aeb523e58b1f
linuxlinux>= 07037db5d479f90377c998259a4f9a469c404edf < d4e7db757e2d7f4c407a007e92c98477eab215d2d4e7db757e2d7f4c407a007e92c98477eab215d2
linuxlinux>= 07037db5d479f90377c998259a4f9a469c404edf < 0c710050c47d45eb77b28c271cddefc5c785cb400c710050c47d45eb77b28c271cddefc5c785cb40
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.10.4-16.10.4-1
linuxlinux_kernel>= 0 < 6.10.4-16.10.4-1
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 4.15 < 5.10.2245.10.224
linuxlinux_kernel>= 5.11 < 5.15.1655.15.165
linuxlinux_kernel>= 5.16 < 6.1.1046.1.104
linuxlinux_kernel>= 6.2 < 6.6.456.6.45
linuxlinux_kernel>= 6.7 < 6.10.46.10.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.