Rewterz
Multiple Adobe Products Vulnerabilities
September 17, 2024
Rewterz
North Korean Threat Actors Use RustDoor Malware to Target Cryptocurrency Users on LinkedIn – Active IOCs
September 17, 2024

Multiple Linux Kernel Vulnerabilities

Severity

Medium

Analysis Summary

CVE-2024-43908 CVSS:6.2

Linux Kernel is vulnerable to a denial of service, caused by a NULL pointer dereference in ras_manager. By sending a specially crafted request, a local authenticated attacker could exploit this vulnerability to cause a denial of service condition.

CVE-2024-43870 CVSS:6.2

Linux Kernel is vulnerable to a denial of service, caused by a NULL pointer dereference in ras_manager. By sending a specially crafted request, a local authenticated attacker could exploit this vulnerability to cause a denial of service condition.

CVE-2024-42306 CVSS:5.5

Linux Kernel is vulnerable to a denial of service, caused by a with using corrupted block bitmap buffer. By sending a specially crafted request, a local authenticated attacker could exploit this vulnerability to cause a denial of service condition.

Impact

  • Denial of Service

Indicators of Compromise

CVE

  • CVE-2024-43908
  • CVE-2024-43870
  • CVE-2024-42306

Affected Vendors

Linux

Affected Products

  • Linux Kernel 5.4
  • Linux Kernel 5.10
  • Linux Kernel 5.15
  • Linux Kernel 6.1
  • Linux Kernel 6.6
  • Linux Kernel 6.10

Remediation

Refer to Linux Kernel GIT Repository for patch, upgrade or suggested workaround information.

CVE-2024-43908

CVE-2024-43870

CVE-2024-42306