PT-2024-35567 · Linux+8 · Linux Kernel+8

Hyunwoo Kim

·

Published

2024-11-09

·

Updated

2025-10-03

·

CVE-2024-53103

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.12.0
Description A vulnerability has been resolved in the Linux kernel related to the hv sock module. The issue arises when the vsk->trans variable is not initialized to NULL upon the release of hvs, potentially leading to a dangling pointer. This problem is addressed by ensuring vsk->trans is initialized to NULL.
Recommendations For Linux kernel versions prior to 6.12.0, upgrade to version 6.12.0 or later to resolve the issue. As a temporary workaround, consider initializing vsk->trans to NULL manually until a patch is applied. Restrict access to the hv sock module to minimize the risk of exploitation. Avoid using the vsk->trans variable in sensitive operations until the issue is resolved.

Exploit

Fix

Use After Free

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-17891
ALT-PU-2025-12647
AZL-54942
BDU:2025-04997
CVE-2024-53103
DLA-4008-1
DLA-4075-1
INFSA-2025_6966
LSN-0109-1
OESA-2025-1034
OESA-2025-1036
OPENSUSE-SU-2025_0117-1
OPENSUSE-SU-2025_0153-1
OPENSUSE-SU-2025_0154-1
OPENSUSE-SU-2025_0556-1
OPENSUSE-SU-2025_0577-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2025:0117-1
SUSE-SU-2025:0153-1
SUSE-SU-2025:0154-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0556-1
SUSE-SU-2025:0577-1
SUSE-SU-2025:0577-2
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0577-1
SUSE-SU-2025_0577-2
USN-7233-1
USN-7233-2
USN-7233-3
USN-7234-1
USN-7234-2
USN-7234-3
USN-7234-4
USN-7234-5
USN-7235-1
USN-7235-2
USN-7235-3
USN-7236-1
USN-7236-2
USN-7236-3
USN-7237-1
USN-7238-1
USN-7238-2
USN-7238-3
USN-7238-4
USN-7295-1
USN-7308-1
USN-7311-1
USN-7389-1
USN-7390-1
USN-7413-1
USN-7468-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu