PT-2024-9744 · Linux+8 · Linux Kernel+8

Andrew Cooper

·

Published

2024-12-10

·

Updated

2025-11-12

·

CVE-2024-53241

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.74
Description The issue is related to the x86/xen component of the Linux kernel, where the PV iret hypercall was previously done through the hypercall page. This has been changed to directly code the required sequence in xen-asm.S, in preparation for no longer using the hypercall page due to problems with speculation mitigations. The vulnerability may allow a remote attacker to gain unauthorized access to protected information due to an incorrect sequence of processor instructions resulting from the lack of an ENDBR instruction and prolog/epilog for hash-based CFI schemes.
Recommendations For Linux kernel versions prior to 6.6.74, update to version 6.6.74 or later to resolve the issue. As a temporary workaround, consider disabling the use of the hypercall page until a patch is available. Restrict access to the xen-asm.S component to minimize the risk of exploitation. Avoid using the vulnerable sequence in the x86/xen component until the issue is resolved.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:20095
ALSA-2025:20518
ALSA-2025:3893
ALSA-2025:3894
BDU:2024-11480
CESA-2025_3893
CESA-2025_3894
CVE-2024-53241
DLA-4075-1
DLA-4076-1
INFSA-2025_20518
INFSA-2025_3893
INFSA-2025_3894
MGASA-2025-0030
MGASA-2025-0032
MGASA-2025-0270
OESA-2025-1078
OESA-2025-1079
OPENSUSE-SU-2025_0117-1
OPENSUSE-SU-2025_0142-1
OPENSUSE-SU-2025_0153-1
OPENSUSE-SU-2025_0154-1
OPENSUSE-SU-2025_0201-1
OPENSUSE-SU-2025_0203-1
OPENSUSE-SU-2025_0229-1
RHSA-2025:20095
RHSA-2025:20518
RHSA-2025:3893
RHSA-2025:3894
RHSA-2025_20518
RHSA-2025_3893
RHSA-2025_3894
SUSE-SU-2025:0117-1
SUSE-SU-2025:0142-1
SUSE-SU-2025:0153-1
SUSE-SU-2025:0154-1
SUSE-SU-2025:01850-1
SUSE-SU-2025:01860-1
SUSE-SU-2025:0201-1
SUSE-SU-2025:0201-2
SUSE-SU-2025:0203-1
SUSE-SU-2025:0229-1
SUSE-SU-2025:0231-1
SUSE-SU-2025:02326-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0142-1
SUSE-SU-2025_0201-1
SUSE-SU-2025_0201-2
SUSE-SU-2025_0203-1
SUSE-SU-2025_02326-1

Affected Products

Almalinux
Astra Linux
Centos
Debian
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse