Bugzilla – Bug 1221296
VUL-0: CVE-2024-26619: kernel: riscv: Fix module loading free order
Last modified: 2024-05-28 09:42:04 UTC
In the Linux kernel, the following vulnerability has been resolved: riscv: Fix module loading free order Reverse order of kfree calls to resolve use-after-free error. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-26619 https://git.kernel.org/stable/c/2fa79badf4bfeffda6b5032cf62b828486ec9a99 https://git.kernel.org/stable/c/78996eee79ebdfe8b6f0e54cb6dcc792d5129291 https://www.cve.org/CVERecord?id=CVE-2024-26619
Only stable contain both the offending and fixing commit.
Nothing to do. Back to sec-team.
riscv unsupported, closing