CVE-2024-41084: cxl/region: Avoid null pointer dereference in region lookup
Published Jul 29, 2024
·Updated
cxl/region: Avoid null pointer dereference in region lookup
Affected Software
8 affected componentsFixes available
redhat/kernel<6.6.37
6.6.37
redhat/kernel<6.9.8
6.9.8
redhat/kernel<6.10
6.10
Linux Linux kernel>=6.4<6.6.37
Linux Linux kernel>=6.7<6.9.8
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1
Microsoft azl3 kernel 6.6.35.1-5
Microsoft azl3 kernel 6.6.47.1-1
Remediation
Event History
Jul 29, 2024
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
Description
Sep 11, 2024
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
DescriptionSeverity
Dec 15, 2024
Data Sourced
via Ubuntu·12:30 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-41084?
CVE-2024-41084 has a medium severity, primarily affecting system stability due to potential null pointer dereferences.
2
How do I fix CVE-2024-41084?
You can fix CVE-2024-41084 by updating the Linux kernel to version 6.6.37, 6.9.8, or 6.10 on Red Hat systems, or to the appropriate patched version on Debian systems.
3
Which versions of the Linux kernel are affected by CVE-2024-41084?
CVE-2024-41084 affects Linux kernel versions between 6.4 and 6.6.37, as well as versions between 6.7 and 6.9.8.
4
What components are impacted by CVE-2024-41084?
CVE-2024-41084 specifically impacts the 'cxl/region' component within the Linux kernel.
5
Is there a public repository link for CVE-2024-41084?
Yes, public repository information for CVE-2024-41084 can be found within the Linux kernel development logs.