CVE Database
/

CVE-2024-50264

Back to search

CVE-2024-50264

Published: Nov 19, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: Initialization of the dangling pointer occurring in vsk->trans During loopback communication, a dangling pointer can be created in vsk->trans, potentially leading to a Use-After-Free condition. This issue is resolved by initializing vsk->trans to NULL.

VendorProductVersions

Linux

Linux

affected
06a8fc78367d070720af960dcecec917d3ae5f3b - < 5f092a4271f6dccf88fe0d132475a17b69ef71df
affected
06a8fc78367d070720af960dcecec917d3ae5f3b - < fd8ae346692a56b4437d626c5460c7104980f389
affected
06a8fc78367d070720af960dcecec917d3ae5f3b - < eb1bdcb7dfc30b24495ee4c5533af0ed135cb5f1
affected
06a8fc78367d070720af960dcecec917d3ae5f3b - < 2a6a4e69f255b7aed17f93995691ab4f0d3c2203
affected
06a8fc78367d070720af960dcecec917d3ae5f3b - < 44d29897eafd0e1196453d3003a4d5e0b968eeab

+3 more versions

Linux

Linux

affected
4.8
unaffected
0 - < 4.8
unaffected
4.19.324 - <= 4.19.*
unaffected
5.4.286 - <= 5.4.*
unaffected
5.10.230 - <= 5.10.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now