CVE Database
/

CVE-2024-50131

Back to search

CVE-2024-50131

Published: Nov 5, 2024

Modified: May 12, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: tracing: Consider the NULL character when validating the event length strlen() returns a string length excluding the null byte. If the string length equals to the maximum buffer length, the buffer will have no space for the NULL terminating character. This commit checks this condition and returns failure for it.

VendorProductVersions

Linux

Linux

affected
dec65d79fd269d05427c8167090bfc9c3d0b56c4 - < 5e3231b352725ff4a3a0095e6035af674f2d8725
affected
dec65d79fd269d05427c8167090bfc9c3d0b56c4 - < 02874ca52df2ca2423ba6122039315ed61c25972
affected
dec65d79fd269d05427c8167090bfc9c3d0b56c4 - < b86b0d6eea204116e4185acc35041ca4ff11a642
affected
dec65d79fd269d05427c8167090bfc9c3d0b56c4 - < f4ed40d1c669bba1a54407d8182acdc405683f29
affected
dec65d79fd269d05427c8167090bfc9c3d0b56c4 - < a14a075a14af8d622c576145455702591bdde09d

+2 more versions

Linux

Linux

affected
5.1
unaffected
0 - < 5.1
unaffected
5.4.285 - <= 5.4.*
unaffected
5.10.229 - <= 5.10.*
unaffected
5.15.170 - <= 5.15.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now