PT-2024-29240 · Linux+9 · Linux Kernel+9

Published

2024-06-14

·

Updated

2025-09-29

·

CVE-2024-41065

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel version 6.10.0-rc3
Description The vulnerability is related to the powerpc/pseries architecture in the Linux kernel. When the config CONFIG HARDENED USERCOPY is enabled, reading the dispatch trace log from /sys/kernel/debug/powerpc/dtl/cpu-* results in a BUG() due to the lack of whitelisting of the dtl slub object for copying to userspace. This issue can cause a kernel BUG and potentially lead to a denial of service. The dtl file read function is involved in this process, and the usercopy abort function is called when the issue occurs.
Recommendations To resolve this issue, update the Linux kernel to a version that includes the fix for this vulnerability, such as version 6.6.43 or later. Ensure that the CONFIG HARDENED USERCOPY config is properly set to avoid similar issues in the future. As a temporary workaround, consider disabling the CONFIG HARDENED USERCOPY config until a patch is available.

Exploit

Fix

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:7000
ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
BDU:2025-01340
CESA-2024_7000
CVE-2024-41065
DLA-4008-1
DSA-5747-1
INFSA-2024_7000
INFSA-2024_9315
MGASA-2024-0277
MGASA-2024-0278
OESA-2024-1992
OESA-2024-1994
OESA-2024-1995
OESA-2024-1996
OESA-2025-1078
OPENSUSE-SU-2024_3190-1
OPENSUSE-SU-2024_3209-1
OPENSUSE-SU-2024_3483-1
RHSA-2024:7000
RHSA-2024:9315
RHSA-2024_7000
RHSA-2024_9315
RHSA-2025:11810
SUSE-SU-2024:3190-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3209-1
SUSE-SU-2024:3383-1
SUSE-SU-2024:3483-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
USN-7088-1
USN-7088-2
USN-7088-3
USN-7088-4
USN-7088-5
USN-7089-1
USN-7089-2
USN-7089-3
USN-7089-4
USN-7089-5
USN-7089-6
USN-7089-7
USN-7090-1
USN-7095-1
USN-7100-1
USN-7100-2
USN-7119-1
USN-7123-1
USN-7144-1
USN-7156-1
USN-7194-1

Affected Products

Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu