Bug 2320194 (CVE-2024-47722)
| Summary: | CVE-2024-47722 kernel: xen: use correct end address of kernel for conflict checking | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security DevOps Team <prodsec-dev> |
| Status: | NEW --- | QA Contact: | |
| Severity: | unspecified | Docs Contact: | |
| Priority: | unspecified | ||
| Version: | unspecified | CC: | dfreiber, drow, jburrell, vkumar |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | If docs needed, set a value | |
| Doc Text: |
[REJECTED CVE] A memory mapping vulnerability in the Linux Kernel's xen module, affecting Xen PV dom0. The kernel failed to check the .brk section for memory conflicts with the host's memory map, potentially leading to crashes or memory corruption
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2320337 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2024-10-21 13:01:10 UTC
Upstream advisory: https://lore.kernel.org/linux-cve-announce/2024102103-CVE-2024-47722-dc6e@gregkh/T This CVE has been rejected upstream: https://ogma.in/understanding-cve-2024-47722-and-its-rejection-by-linux |