CVE-2024-50164: bpf: Fix overloading of MEM_UNINIT's meaning
bpf: Fix overloading of MEMUNINIT's meaning
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1 - Upgrade
Upgrade
debian/linux-6.1to a version that resolves this vulnerability.Fixed in 6.1.129-1~deb11u1
Event History
Frequently Asked Questions
What is the severity of CVE-2024-50164?
CVE-2024-50164 has been classified as a medium severity vulnerability due to its potential impact on system integrity.
How do I fix CVE-2024-50164?
To fix CVE-2024-50164, you should update the Linux kernel to the latest stable version that addresses this vulnerability.
Which versions of the Linux kernel are affected by CVE-2024-50164?
CVE-2024-50164 affects Linux kernel versions between 5.19 and 6.6.59 as well as certain 6.12 release candidates.
What type of vulnerability is CVE-2024-50164?
CVE-2024-50164 is a vulnerability in the BPF verifier related to the overloading of the MEM_UNINIT's meaning.
Who reported the issue for CVE-2024-50164?
The issue for CVE-2024-50164 was reported by a researcher named Lonial.