PT-2024-8358 · Linux+9 · Linux Kernel+9
Nicolas Pitre
·
Published
2024-03-02
·
Updated
2025-11-07
·
CVE-2024-35823
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The issue is related to unicode buffer corruption when deleting characters in the Linux kernel's vt component. This corruption can lead to a denial of service. The problem arises due to overlapping buffers and can be resolved by replacing
memcpy() with memmove().Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
LPE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu