Wind River Support Network

HomeDefectsLIN1019-10794
Fixed

LIN1019-10794 : Security Advisory - linux - CVE-2024-0582

Created: Jan 16, 2024    Updated: Jan 24, 2024
Resolved Date: Jan 23, 2024
Found In Version: 10.19.45.1
Fix Version: 10.19.45.29
Severity: Standard
Applicable for: Wind River Linux LTS 19
Component/s: Kernel

Description

A memory leak flaw was found in the Linux kernel’s io_uring functionality in how a user registers a buffer ring with IORING_REGISTER_PBUF_RING, mmap() it, and then frees it. This flaw allows a local user to crash or potentially escalate their privileges on the system.

CREATE(Triage):(User=admin) CVE-2024-0582 (https://nvd.nist.gov/vuln/detail/CVE-2024-0582)

CVEs


Live chat
Online