SB20241230259 - Resource management error in Linux kernel um drivers
Published: December 30, 2024 Updated: May 11, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Resource management error (CVE-ID: CVE-2024-53184)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to resource management error within the ubd_open_dev() function in arch/um/drivers/ubd_kern.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/16cf8511680809a9f20b3dd224c06d482648f9e2
- https://git.kernel.org/stable/c/23d742a3fcd4781eed015a3a93e6a0e3ab1ef2a8
- https://git.kernel.org/stable/c/2d194d951895df214e066d08146e77cb6e02c1d4
- https://git.kernel.org/stable/c/300e277e463e6326938dd55ea560eafa0f5c88a5
- https://git.kernel.org/stable/c/509ba8746f812e45a05034ba18b73db574693d11
- https://git.kernel.org/stable/c/5727343348f34e11a7c5a2a944d5aa505731d876
- https://git.kernel.org/stable/c/5bee35e5389f450a7eea7318deb9073e9414d3b1
- https://git.kernel.org/stable/c/a5a75207efae4b558aaa34c288de7d6f2e926b4b
- https://git.kernel.org/stable/c/e6e5a4cded9bef3a1b0a4fac815b7176eb9a18ec
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.11.11