PT-2024-26825 · Linux+4 · Linux Kernel+4
Published
2024-02-26
·
Updated
2024-11-15
·
CVE-2024-35988
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.6.37
Description
The issue is related to the definition of TASK SIZE on 64-bit NOMMU systems, where userspace memory can come from anywhere in physical RAM. If any RAM exists above 4G, the current definition of TASK SIZE is wrong, causing spurious failures in the userspace access routines.
Recommendations
Update to Linux kernel version 6.6.37 or later to resolve the issue.
Exploit
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linuxmint
Linux Kernel
Red Os
Ubuntu