摘要:
In the Linux kernel, the following vulnerability has been resolved:
md/raid10: fix null ptr dereference in raid10_size()
In raid10_run() if raid10_set_queue_limits() succeed, the return value
is set to zero, and if following procedures failed raid10_run() will
return zero while mddev->private is still NULL, causing null ptr
dereference in raid10_size().
Fix the problem by only overwrite the return value if
raid10_set_queue_limits() failed.
安全等级: Low
公告ID: KylinSec-SA-2024-4497
发布日期: 2024年12月1日
关联CVE: CVE-2024-50109
In the Linux kernel, the following vulnerability has been resolved:
md/raid10: fix null ptr dereference in raid10_size()
In raid10_run() if raid10_set_queue_limits() succeed, the return value
is set to zero, and if following procedures failed raid10_run() will
return zero while mddev->private is still NULL, causing null ptr
dereference in raid10_size().
Fix the problem by only overwrite the return value if
raid10_set_queue_limits() failed.
cve名称 | 产品 | 组件 | 是否受影响 |
---|---|---|---|
CVE-2024-50109 | KY3.4-5 | kernel | Unaffected |
CVE-2024-50109 | KY3.5.3 | kernel | Unaffected |
CVE-2024-50109 | V6 | kernel | Unaffected |