REDHAT-BUG-2311717: Medium severity red hat kernel-devel vulnerability

Published Sep 11, 2024
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

bpf: Fix a kernel verifier crash in stacksafe()

Daniel Hodges reported a kernel verifier crash when playing with sched-ext. Further investigation shows that the crash is due to invalid memory access in stacksafe(). More specifically, it is the following code:

if (exact != NOTEXACT && old->stack[spi].slottype[i % BPFREGSIZE] != cur->stack[spi].slottype[i % BPFREGSIZE]) return false;

The 'i' iterates old->allocatedstack. If cur->allocatedstack < old->allocatedstack the out-of-bound access will happen.

To fix the issue add 'i >= cur->allocatedstack' check such that if the condition is true, stacksafe() should fail. Otherwise, cur->stack[spi].slottype[i % BPFREGSIZE] memory access is legal.

Affected Software

1 affected component
Linux Kernel

Event History

Sep 11, 2024
Data Sourced
via Red Hat·04:21 PM
DescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-2311717?

The severity of REDHAT-BUG-2311717 is classified as high due to its potential to cause system crashes.

2

How do I fix REDHAT-BUG-2311717?

To fix REDHAT-BUG-2311717, update your Linux kernel to the latest patched version provided by Red Hat.

3

What systems are affected by REDHAT-BUG-2311717?

REDCAT-BUG-2311717 affects systems running specific versions of the Red Hat Kernel-devel.

4

What vulnerabilities does REDHAT-BUG-2311717 address?

REDCAT-BUG-2311717 addresses a kernel verifier crash due to invalid memory access in the stacksafe function.

5

Who reported the vulnerability REDHAT-BUG-2311717?

The vulnerability REDHAT-BUG-2311717 was reported by Daniel Hodges.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203