I
n the Linux kernel, the following vulnerability has been resolved: ublk: don't allow user copy for unprivileged device UBLK_F_USER_COPY requires userspace to call write() on ublk char device for filling request buffer, and unprivileged device can't be trusted. So don't allow user copy for unprivileged device.
References
Configurations
Configuration 1 (hide)
|
History
30 Oct 2024, 15:54
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-noinfo | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| First Time |
Linux
Linux linux Kernel |
|
| CPE | cpe:2.3:o:linux:linux_kernel:6.12:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.12:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.12:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
|
| References | () https://git.kernel.org/stable/c/42aafd8b48adac1c3b20fe5892b1b91b80c1a1e6 - Patch | |
| References | () https://git.kernel.org/stable/c/6414ab5c9c9c068eca6dc4fd3a036bc4b83164dc - Patch | |
| References | () https://git.kernel.org/stable/c/8f3d5686a2409877c5e8e2540774d24ed2b4a4ce - Patch |
29 Oct 2024, 14:34
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
29 Oct 2024, 01:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-10-29 01:15
Updated : 2025-10-01 21:15
NVD link : CVE-2024-50080
Mitre link : CVE-2024-50080
CVE.ORG link : CVE-2024-50080
JSON object : View
Products Affected
CWE