PT-2025-8838 · Linux+5 · Linux Kernel+5

Syzbot

·

Published

2025-01-05

·

Updated

2026-04-20

·

CVE-2024-58016

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been identified where the handle policy update() function does not properly check the size of policy writes. This issue can be triggered by attempting to write a buffer with a large size to a sysfs entry, resulting in a warning in kmalloc. The vulnerability is related to the safesetid mechanism and the handling of policy updates.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-11848
CVE-2024-58016
DLA-4102-1
DLA-4178-1
OESA-2025-1446
OESA-2025-1450
USN-7510-1
USN-7510-2
USN-7510-3
USN-7510-4
USN-7510-5
USN-7510-6
USN-7510-7
USN-7510-8
USN-7511-1
USN-7511-2
USN-7511-3
USN-7512-1
USN-7521-1
USN-7521-2
USN-7521-3
USN-7593-1
USN-7602-1
USN-7651-1
USN-7651-2
USN-7651-3
USN-7651-4
USN-7651-5
USN-7651-6
USN-7652-1
USN-7653-1
USN-7737-1

Affected Products

Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Ubuntu