CVE-2024-46865 — Use of Uninitialized Resource in Linux
Severity
7.1HIGHNVD
OSV8.8
EPSS
0.0%
top 97.99%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 27
Latest updateJan 20
Description
In the Linux kernel, the following vulnerability has been resolved:
fou: fix initialization of grc
The grc must be initialize first. There can be a condition where if
fou is NULL, goto out will be executed and grc would be used
uninitialized.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2
Affected Packages6 packages
▶CVEListV5linux/linux231c235d2f7a66f018f172e26ffd47c363f244ef — 392f6a97fcbecc64f0c00058b2db5bb0e4b8cc3e+10