Review reviewHigh

CVE-2024-26712

Linux Linux, linux kernel, debian linux

In the Linux kernel, the following vulnerability has been resolved: powerpc/kasan: Fix addr error caused by page alignment In kasan_init_region, when k_start is not page aligned, at the begin of for loop, k_cur = k_start & PAGE_MASK is less than k_start, and then `va = block + k_cur - k_start` is less than block, the addr va is invalid, because the memory address space from va to block is not alloced by memblock_alloc, which will not be reserved by memblock_reserve later, it will be used by other places. As a result, memory overwriting occurs. for example: int __init __weak kasan_init_regio...

CVSS
7.8
EPSS
0.23%
14.0% percentile
CISA KEV
Not listed
Published
2024.04.04
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.23%
Technical severityCVSS 7.8

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: powerpc/kasan: Fix addr error caused by page alignment In kasan_init_region, when k_start is not page aligned, at the begin of for loop, k_cur = k_start & PAGE_MASK is less than k_start, and then `va = block + k_cur - k_start` is less than block, the addr va is invalid, because the memory address space from va to block is not alloced by memblock_alloc, which will not be reserved by memblock_reserve later, it will be used by other places. As a result, memory overwriting occurs. for example: int __init __weak kasan_init_regio...

Affected product and versions

Product
Linux Linux, linux kernel, debian linux
Affected versions
>= 663c0c9496a69f80011205ba3194049bcafd681d < 230e89b5ad0a33f530a2a976b3e5e4385cb27882, >= 663c0c9496a69f80011205ba3194049bcafd681d < 2738e0aa2fb24a7ab9c878d912dc2b239738c6c6, >= 663c0c9496a69f80011205ba3194049bcafd681d < 0c09912dd8387e228afcc5e34ac5d79b1e3a1058, >= 663c0c9496a69f80011205ba3194049bcafd681d < 0516c06b19dc64807c10e01bb99b552bdf2d7dbe, >= 663c0c9496a69f80011205ba3194049bcafd681d < 70ef2ba1f4286b2b73675aeb424b590c92d57b25, >= 663c0c9496a69f80011205ba3194049bcafd681d < 4a7aee96200ad281a5cc4cf5c7a2e2a49d2b97b0, >= 5ce93076d8ee2a0fac3ad4adbd2e91b6197146db, >= 5.3.6 < 5.4, >= 5.4, >= 5.4 < 5.10.210, >= 5.11 < 5.15.149, >= 5.16 < 6.1.79, >= 6.2 < 6.6.18, >= 6.7 < 6.7.6, 6.8, 10.0
Fixed versions
5.10.210, 5.15.149, 6.1.79, 6.6.18, 6.7.6

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux Linux, linux kernel, debian linux and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
Not available