PT-2024-33973 · Linux+7 · Linux Kernel+7

Published

2024-11-07

·

Updated

2025-10-03

·

CVE-2024-50141

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.6.61
Description: The issue arises because the PRMT is finding a block of type EFI CONVENTIONAL MEMORY, which is not appropriate for runtime services as described in Section 2.2.2 (Runtime Services) of the UEFI Specification. This causes an exception when the PRM handler is called, resulting in a failure during error handling. The problem is that only memory that has been remapped for runtime by the firmware can be used by the PRM handler, and so the region needs to have the EFI MEMORY RUNTIME attribute. By using the correct memory types for runtime services, the PRM handler and the context are properly mapped in the virtual address space during runtime, preventing the paging request error.
Recommendations: Update to Linux kernel version 6.6.61 or later to resolve the issue. As a temporary workaround, consider restricting access to the PRM handler until a patch is available. Ensure that the correct memory types are used for runtime services to prevent the paging request error.

Exploit

Fix

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-17211
ALT-PU-2025-12647
AZL-53609
AZL-53639
BDU:2025-03474
CVE-2024-50141
DLA-4008-1
INFSA-2025_6966
MGASA-2024-0368
MGASA-2024-0369
OESA-2024-2492
OESA-2024-2493
OESA-2024-2494
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2024_4314-1
OPENSUSE-SU-2024_4315-1
OPENSUSE-SU-2024_4316-1
OPENSUSE-SU-2024_4376-1
OPENSUSE-SU-2025:14705-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2024:4314-1
SUSE-SU-2024:4315-1
SUSE-SU-2024:4316-1
SUSE-SU-2024:4318-1
SUSE-SU-2024:4364-1
SUSE-SU-2024:4376-1
SUSE-SU-2024:4387-1
SUSE-SU-2025:20163-1
SUSE-SU-2025:20164-1
SUSE-SU-2025:20246-1
SUSE-SU-2025:20247-1
USN-7276-1
USN-7277-1
USN-7288-1
USN-7288-2
USN-7289-1
USN-7289-2
USN-7289-3
USN-7289-4
USN-7291-1
USN-7305-1
USN-7308-1
USN-7310-1
USN-7331-1
USN-7388-1
USN-7389-1
USN-7390-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7458-1
USN-7468-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu