First published: Thu Jan 11 2024(Updated: )
A cgroup blkio memory leakage problem was found in blkgs destruction path in block/blk-cgroup.c in the Linux kernel. In this flaw, an attacker with a local access may cause a system instability, such as out of memory. Refer: <a href="https://lore.kernel.org/linux-block/20221215033132.230023-3-longman@redhat.com/">https://lore.kernel.org/linux-block/20221215033132.230023-3-longman@redhat.com/</a>
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | >=6.2<6.4 | |
Linux Kernel | =6.4-rc1 | |
Linux Kernel | =6.4-rc2 | |
Linux Kernel | =6.4-rc3 | |
Linux Kernel | =6.4-rc4 | |
Linux Kernel | =6.4-rc5 | |
Linux Kernel | =6.4-rc6 | |
Red Hat Enterprise Linux | =8.0 | |
Red Hat Enterprise Linux | =9.0 | |
Fedoraproject Fedora | =39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0443 has been classified with a high severity due to its potential to cause system instability and memory leakage.
To fix CVE-2024-0443, update the Linux kernel to a version above 6.4 to mitigate the cgroup blkio memory leakage vulnerability.
CVE-2024-0443 affects users of Linux kernel versions from 6.2 up to 6.4, as well as specific versions of Red Hat Enterprise Linux and Fedora.
Systems running Linux kernel versions 6.2 to 6.4, including various distributions like Red Hat Enterprise Linux 8.0, 9.0, and Fedora 39, are impacted.
CVE-2024-0443 requires local access for exploitation, making it less likely to be exploited remotely.