VulnerabilityAnalyzed
CVE-2024-26843
In the Linux kernel, the following vulnerability has been resolved: efi: runtime: Fix potential overflow of soft-reserved region size md_size will have been narrowed if we have >= 4GB worth of pages in a soft-reserved region.
MEDIUM 6.0EPSS 0.23%
Does this matter?
Lower severity and a low EPSS score (0.23%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: efi: runtime: Fix potential overflow of soft-reserved region size md_size will have been narrowed if we have >= 4GB worth of pages in a soft-reserved region.
- CVSS 3.1
- 6.0 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H
- EPSS
- 0.23% probability · 13th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-787
- Affected
- linux/linux kernel · debian/debian linux
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/156cb12ffdcf33883304f0db645e1eadae712fe0Patch
- https://git.kernel.org/stable/c/4aa36b62c3eaa869860bf78b1146e9f2b5f782a9Patch
- https://git.kernel.org/stable/c/4fff3d735baea104017f2e3c245e27cdc79f2426Patch
- https://git.kernel.org/stable/c/700c3f642c32721f246e09d3a9511acf40ae42bePatch
- https://git.kernel.org/stable/c/cf3d6813601fe496de7f023435e31bfffa74ae70Patch
- https://git.kernel.org/stable/c/de1034b38a346ef6be25fe8792f5d1e0684d5ff4Patch
- https://git.kernel.org/stable/c/156cb12ffdcf33883304f0db645e1eadae712fe0Patch
- https://git.kernel.org/stable/c/4aa36b62c3eaa869860bf78b1146e9f2b5f782a9Patch
- https://git.kernel.org/stable/c/4fff3d735baea104017f2e3c245e27cdc79f2426Patch
- https://git.kernel.org/stable/c/700c3f642c32721f246e09d3a9511acf40ae42bePatch
- https://git.kernel.org/stable/c/cf3d6813601fe496de7f023435e31bfffa74ae70Patch
- https://git.kernel.org/stable/c/de1034b38a346ef6be25fe8792f5d1e0684d5ff4Patch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00017.htmlMailing List
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.