Untrusted Pointer Dereference Affecting kernel-zfcpdump-devel package, versions <0:4.18.0-553.22.1.el8_10
Threat Intelligence
EPSS
0.04% (11th
percentile)
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-RHEL8-KERNELZFCPDUMPDEVEL-7597710
- published 5 Aug 2024
- disclosed 30 Jul 2024
Introduced: 30 Jul 2024
CVE-2024-42226 Open this link in a new tabHow to fix?
Upgrade RHEL:8
kernel-zfcpdump-devel
to version 0:4.18.0-553.22.1.el8_10 or higher.
This issue was patched in RHSA-2024:7000
.
NVD Description
Note: Versions mentioned in the description apply only to the upstream kernel-zfcpdump-devel
package and not the kernel-zfcpdump-devel
package as distributed by RHEL
.
See How to fix?
for RHEL:8
relevant fixed versions and status.
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
References
- https://access.redhat.com/security/cve/CVE-2024-42226
- https://git.kernel.org/stable/c/1f4a10cb826fdec5cd442df010bcb3043bfd6464
- https://git.kernel.org/stable/c/66cb618bf0bb82859875b00eeffaf223557cb416
- https://git.kernel.org/stable/c/69bed24c82139bbad0a78a075e1834a2ea7bd064
- https://git.kernel.org/stable/c/948554f1bb16e15b90006c109c3a558c66d4c4ac
- https://git.kernel.org/stable/c/9a24eb8010c2dc6a2eba56e3eb9fc07d14ffe00a
- https://git.kernel.org/stable/c/c0ee01e8ba19ff7edc98f68a114d4789faa219b9
CVSS Scores
version 3.1