PT-2024-31367 · Linux+1 · Linux Kernel+1

Vasily Gorbik

·

Published

2024-08-21

·

Updated

2025-09-29

·

CVE-2024-45014

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue arises when physical memory for the kernel image is allocated, and it does not consider the extra memory required for offsetting the image start to match it with the lower 20 bits of KASLR virtual base address. This might lead to kernel access beyond its memory range.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-13260
BDU:2025-03749
CVE-2024-45014

Affected Products

Alt Linux
Linux Kernel