CVE-2024-26947: ARM: 9359/1: flush: check if the folio is reserved for no-mapping addresses
Published May 1, 2024
·Updated
ARM: 9359/1: flush: check if the folio is reserved for no-mapping addresses
Affected Software
13 affected componentsFixes available
debian/linux<=5.10.223-1, <=5.10.234-1, <=6.1.129-1, <=6.1.135-1
6.12.25-16.12.27-1
Linux Linux kernel>=5.4.167<5.5
Linux Linux kernel>=5.10.87<5.11
Linux Linux kernel>=5.14<6.6.24
Linux Linux kernel>=6.7<6.7.12
Linux Linux kernel>=6.8<6.8.3
redhat/kernel<6.6.24
6.6.24
redhat/kernel<6.7.12
6.7.12
redhat/kernel<6.8.3
6.8.3
redhat/kernel<6.9
6.9
Microsoft azl3 hyperv-daemons 6.6.35.1-1
Microsoft azl3 hyperv-daemons 6.6.22.1-2
Microsoft cbl2 kernel 5.15.186.1-1
Remediation
Event History
May 1, 2024
CVE Published
via MITRE·05:18 AM
Data Sourced
via MITRE·05:18 AM
Description
Data Sourced
via NVD·06:15 AM
Description
Data Sourced
via NVD·06:15 AM
RemedySeverityAffected Software
Data Sourced
via Red Hat·04:22 PM
DescriptionSeverityAffected Software
May 13, 2024
Data Sourced
via Microsoft·12:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Jun 8, 2024
Data Sourced
via Launchpad·01:10 AM
Description
Apr 28, 2025
Data Sourced
via Ubuntu·02:21 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-26947?
CVE-2024-26947 is categorized as a high severity vulnerability in the Linux kernel.
2
How do I fix CVE-2024-26947?
To remediate CVE-2024-26947, update the Linux kernel to versions 6.6.24, 6.7.12, 6.8.3, 6.9, or specific patches in Debian Linux.
3
What systems are affected by CVE-2024-26947?
CVE-2024-26947 affects the Linux kernel across various distributions including Red Hat and Debian.
4
What are the potential risks of CVE-2024-26947?
Exploitation of CVE-2024-26947 could lead to unauthorized access or manipulation of system memory.
5
What is the nature of the vulnerability in CVE-2024-26947?
The vulnerability in CVE-2024-26947 involves improper checking of reserved memory addresses in the ARM architecture of the Linux kernel.