CVE-2024-27022: fork: defer linking file vma until vma is fully initialized
fork: defer linking file vma until vma is fully initialized
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1Fixed in 6.12.27-1 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 6.8.8 - Upgrade
Upgrade
redhat/kernelto a version that resolves this vulnerability.Fixed in 6.9
Event History
Frequently Asked Questions
What is the severity of CVE-2024-27022?
CVE-2024-27022 is classified as a high severity vulnerability affecting the Linux kernel.
How do I fix CVE-2024-27022?
To fix CVE-2024-27022, update the kernel to the recommended versions specified in the vendor advisories.
Which versions of the Linux kernel are affected by CVE-2024-27022?
CVE-2024-27022 affects kernel versions before 6.8.8 and specific versions of the 5.10.x and 6.1.x branches.
Is there a workaround for CVE-2024-27022?
Currently, the recommended approach is to apply updates rather than relying on workarounds for CVE-2024-27022.
What systems are impacted by CVE-2024-27022?
CVE-2024-27022 impacts systems running affected versions of the Linux kernel distributed by Red Hat and Debian.