CVE-2024-42067: bpf: Take return from set_memory_rox() into account with bpf_jit_binary_lock_ro()
bpf: Take return from setmemoryrox() into account with bpfjitbinarylockro()
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 6.12.25-1Fixed in 6.12.27-1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.43.1-7
Event History
Frequently Asked Questions
What is the severity of CVE-2024-42067?
CVE-2024-42067 is classified as a high-severity vulnerability due to its potential to leave memory unprotected.
How do I fix CVE-2024-42067?
To address CVE-2024-42067, update your Linux kernel to version 6.12.11-1 or higher.
What are the affected versions for CVE-2024-42067?
CVE-2024-42067 affects Linux kernel versions prior to 6.6.37 and between 6.7 and 6.9.8.
What happens if CVE-2024-42067 is exploited?
Exploitation of CVE-2024-42067 may allow an attacker to manipulate protected memory regions, leading to potential system compromise.
Is CVE-2024-42067 present in Debian distributions?
Yes, CVE-2024-42067 can be found in certain Debian Linux kernel packages, particularly those below version 5.10.226-1.