Back to search
CVE-2024-50264
Published: Nov 19, 2024
Modified: May 11, 2026
PUBLISHED
Description
In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: Initialization of the dangling pointer occurring in vsk->trans During loopback communication, a dangling pointer can be created in vsk->trans, potentially leading to a Use-After-Free condition. This issue is resolved by initializing vsk->trans to NULL.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 06a8fc78367d070720af960dcecec917d3ae5f3b - < 5f092a4271f6dccf88fe0d132475a17b69ef71dfaffected 06a8fc78367d070720af960dcecec917d3ae5f3b - < fd8ae346692a56b4437d626c5460c7104980f389affected 06a8fc78367d070720af960dcecec917d3ae5f3b - < eb1bdcb7dfc30b24495ee4c5533af0ed135cb5f1affected 06a8fc78367d070720af960dcecec917d3ae5f3b - < 2a6a4e69f255b7aed17f93995691ab4f0d3c2203affected 06a8fc78367d070720af960dcecec917d3ae5f3b - < 44d29897eafd0e1196453d3003a4d5e0b968eeab+3 more versions |
Linux | Linux | affected 4.8unaffected 0 - < 4.8unaffected 4.19.324 - <= 4.19.*unaffected 5.4.286 - <= 5.4.*unaffected 5.10.230 - <= 5.10.*+5 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now