PT-2024-33941 · Linux+4 · Linux Kernel+4
Valdikss
·
Published
2024-10-09
·
Updated
2025-09-29
·
CVE-2024-50109
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
A null pointer dereference issue in the Linux kernel has been identified. The problem occurs in the
raid10 size() function when mddev->private is still NULL after raid10 set queue limits() succeeds, and subsequent procedures fail, causing raid10 run() to return zero. This issue is resolved by only overwriting the return value if raid10 set queue limits() fails.Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Linuxmint
Linux Kernel
Red Hat
Ubuntu