CVE Database
/

CVE-2024-36288

Back to search

CVE-2024-36288

Published: Jun 21, 2024

Modified: May 23, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Fix loop termination condition in gss_free_in_token_pages() The in_token->pages[] array is not NULL terminated. This results in the following KASAN splat: KASAN: maybe wild-memory-access in range [0x04a2013400000008-0x04a201340000000f]

VendorProductVersions

Linux

Linux

affected
ab8466d4e26806a4ae82c282762c4545eecf45ef - < 57ff6c0a175930856213b2aa39f8c845a53e5b1c
affected
4420b73c7f26fd5fcb37bbce5313dd356ef1b3ca - < 6ed45d20d30005bed94c8c527ce51d5ad8121018
affected
f148a95f68c66c1b097391b68e153d5a46f0e780 - < 4cefcd0af7458bdeff56a9d8dfc6868ce23d128a
affected
fe0b474974fee7af1df286e0edd5a1460c811865 - < b4878ea99f2b40ef1925720b1b4ca7f4af1ba785
affected
c1d8c429e4d2ce85ec5c92cf71cb419baf75c56f - < af628d43a822b78ad8d4a58d8259f8bf8bc71115

+4 more versions

Linux

Linux

affected
6.9.3 - < 6.9.4

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now