cbcvebase.
CVE-2024-50112
published 2024-11-05

CVE-2024-50112: In the Linux kernel, the following vulnerability has been resolved: x86/lam: Disable ADDRESS_MASKING in most cases Linear Address Masking (LAM) has a weakness…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.28%
19.9th percentile
In the Linux kernel, the following vulnerability has been resolved: x86/lam: Disable ADDRESS_MASKING in most cases Linear Address Masking (LAM) has a weakness related to transient execution as described in the SLAM paper[1]. Unless Linear Address Space Separation (LASS) is enabled this weakness may be exploitable. Until kernel adds support for LASS[2], only allow LAM for COMPILE_TEST, or when speculation mitigations have been disabled at compile time, otherwise keep LAM disabled. There are no processors in market that support LAM yet, so currently nobody is affected by this issue. [1] SLAM: https://download.vusec.net/papers/slam_sp24.pdf [2] LASS: https://lore.kernel.org/lkml/[email protected]/ [ dhansen: update SPECULATION_MITIGATIONS -> CPU_MITIGATIONS ]

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.11.6-1 (forky)linux 6.11.6-1 (forky)
linuxlinux
linuxlinux>= 6449dcb0cac738219d13c618af7fd8664735f99d < 60a5ba560f296ad8da153f6ad3f70030bfa3958f60a5ba560f296ad8da153f6ad3f70030bfa3958f
linuxlinux>= 6449dcb0cac738219d13c618af7fd8664735f99d < 690599066488d16db96ac0d6340f9372fc56f337690599066488d16db96ac0d6340f9372fc56f337
linuxlinux>= 6449dcb0cac738219d13c618af7fd8664735f99d < 3267cb6d3a174ff83d6287dcd5b0047bbd9124523267cb6d3a174ff83d6287dcd5b0047bbd912452
linuxlinux_kernel< 6.6.596.6.59
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.11.6-16.11.6-1
linuxlinux_kernel>= 0 < 6.11.6-16.11.6-1
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 6.7 < 6.11.66.11.6
msrcazl3_kernel_6.6.57.1-7_on_azure_linux_3.0
msrccbl2_kernel_5.15.180.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8LOW
vendor_redhat7.8HIGH
vendor_msrc5.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.