cbcvebase.
CVE-2024-53137
published 2024-12-04

CVE-2024-53137: In the Linux kernel, the following vulnerability has been resolved: ARM: fix cacheflush with PAN It seems that the cacheflush syscall got broken when PAN for…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.18%
7.2th percentile
In the Linux kernel, the following vulnerability has been resolved: ARM: fix cacheflush with PAN It seems that the cacheflush syscall got broken when PAN for LPAE was implemented. User access was not enabled around the cache maintenance instructions, causing them to fault.

Affected

9 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.11.10-1 (forky)linux 6.11.10-1 (forky)
linuxlinux
linuxlinux>= 7af5b901e84743c608aae90cb0e429702812c324 < e6960a2ed49c9a25357817535f7cc50594a58604e6960a2ed49c9a25357817535f7cc50594a58604
linuxlinux>= 7af5b901e84743c608aae90cb0e429702812c324 < ca29cfcc4a21083d671522ad384532e28a43f033ca29cfcc4a21083d671522ad384532e28a43f033
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.11.10-16.11.10-1
linuxlinux_kernel>= 0 < 6.11.10-16.11.10-1
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 6.10 < 6.11.106.11.10

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.