CVE-2024-53117: virtio/vsock: Improve MSG_ZEROCOPY error handling
In the Linux kernel, the following vulnerability has been resolved:
virtio/vsock: Improve MSGZEROCOPY error handling
Add a missing kfreeskb() to prevent memory leaks.
Other sources
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-53117?
CVE-2024-53117 has been classified as a low severity vulnerability.
How do I fix CVE-2024-53117?
To address CVE-2024-53117, upgrade to the patched versions of the Linux Kernel, specifically 6.12 or subsequent releases.
Which versions of the Linux Kernel are affected by CVE-2024-53117?
CVE-2024-53117 affects Linux Kernel versions from 6.7 to 6.11.10 and specific 6.12 release candidates.
What type of vulnerability is CVE-2024-53117?
CVE-2024-53117 involves a memory leak issue due to inadequate error handling related to MSG_ZEROCOPY in virtio/vsock.
Is CVE-2024-53117 a longstanding vulnerability?
CVE-2024-53117 was recently discovered and has been promptly addressed in the latest kernel updates.