PT-2024-29168 · Linux+1 · Linux Kernel+1

Published

2024-06-15

·

Updated

2024-08-30

·

CVE-2024-40950

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability has been resolved in the Linux kernel related to the mapping large folio support() function, which is only reasonable for page cache folios. However, in split huge page to list to order(), the folio passed to mapping large folio support() may be an anonymous folio, causing the split of anonymous THP to fail. A check for folio test anon() is missing, and shmem mapping() is not involved in this case. The issue can be detected using /sys/kernel/debug/split huge pages.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

BDU:2026-04548
CVE-2024-40950
OESA-2024-2076

Affected Products

Astra Linux
Linux Kernel