CVE-2024-26753
Published: Apr 3, 2024
Modified: May 23, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: crypto: virtio/akcipher - Fix stack overflow on memcpy sizeof(struct virtio_crypto_akcipher_session_para) is less than sizeof(struct virtio_crypto_op_ctrl_req::u), copying more bytes from stack variable leads stack overflow. Clang reports this issue by commands: make -j CC=clang-14 mrproper >/dev/null 2>&1 make -j O=/tmp/crypto-build CC=clang-14 allmodconfig >/dev/null 2>&1 make -j O=/tmp/crypto-build W=1 CC=clang-14 drivers/crypto/virtio/ virtio_crypto_akcipher_algs.o
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 1ff57428894fc4f5001d3df0762c1820295d6c4f - < 37077ed16c7793e21b005979d33f8a61565b7e86affected 59ca6c93387d325e96577d8bd4c23c78c1491c11 - < 62f361bfea60c6afc3df09c1ad4152e6507f6f47affected 59ca6c93387d325e96577d8bd4c23c78c1491c11 - < b0365460e945e1117b47cf7329d86de752daff63affected 59ca6c93387d325e96577d8bd4c23c78c1491c11 - < ef1e47d50324e232d2da484fe55a54274eeb9bc1affected 59ca6c93387d325e96577d8bd4c23c78c1491c11 - < c0ec2a712daf133d9996a8a1b7ee2d4996080363+1 more versions |
Linux | Linux | affected 5.18unaffected 0 - < 5.18unaffected 5.10.212 - <= 5.10.*unaffected 6.1.80 - <= 6.1.*unaffected 6.6.19 - <= 6.6.*+2 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now