NULL Pointer Dereference Affecting kernel-debug-uki-virt package, versions <0:5.14.0-427.33.1.el9_4
Threat Intelligence
EPSS
0.04% (10th
percentile)
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-ORACLE9-KERNELDEBUGUKIVIRT-7852043
- published 30 Aug 2024
- disclosed 17 Apr 2024
Introduced: 17 Apr 2024
CVE-2024-26908 Open this link in a new tabHow to fix?
Upgrade Oracle:9
kernel-debug-uki-virt
to version 0:5.14.0-427.33.1.el9_4 or higher.
This issue was patched in ELSA-2024-5928
.
NVD Description
Note: Versions mentioned in the description apply only to the upstream kernel-debug-uki-virt
package and not the kernel-debug-uki-virt
package as distributed by Oracle
.
See How to fix?
for Oracle:9
relevant fixed versions and status.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
References
- https://linux.oracle.com/cve/CVE-2024-26908.html
- https://linux.oracle.com/errata/ELSA-2024-5101.html
- https://git.kernel.org/stable/c/025a8a96c7ef3ff24a9b4753a7e851ba16f11bfc
- https://git.kernel.org/stable/c/3693bb4465e6e32a204a5b86d3ec7e6b9f7e67c2
- https://git.kernel.org/stable/c/70a33a629090130d731fc1e1ad498bb672eea165
- https://git.kernel.org/stable/c/8082bccb7ac480ceab89b09c53d20c78ae54f9fa
- https://git.kernel.org/stable/c/a9bbb05c0c04b49a1f7f05fd03826321dca2b8d4
- https://git.kernel.org/stable/c/d211e8128c0e2122512fa5e859316540349b54af
- https://git.kernel.org/stable/c/eb279074badac0bbe28749906562d648ca4bc750
- https://git.kernel.org/stable/c/f49c513f46dc19bf01ffad2aaaf234d7f37f6799
CVSS Scores
version 3.1