PT-2025-3269 · Linux+2 · Linux Kernel+2
Syzbot
·
Published
2024-12-18
·
Updated
2026-05-26
·
CVE-2024-56368
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.13.0-rc2-syzkaller-00159-gf932fb9b4074
Description
An overflow occurred in the Linux kernel's ring-buffer when performing a calculation. The issue was reported as a slab-out-of-bounds in the
rb map vma function. A check has been added before the calculation to avoid this problem. The reproducer for this bug is available and involves mapping a file to memory using the mmap system call.Recommendations
To resolve this issue, update to a version of the Linux kernel that includes the fix for the overflow in the
rb map vma function. As a temporary workaround, consider restricting access to the vulnerable ring buffer map function until a patch is available. Avoid using the mmap system call with the trace pipe raw file until the issue is resolved.Exploit
Fix
Integer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linuxmint
Linux Kernel
Ubuntu