CVE-2024-50076: Linux Kernel

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: vt: prevent kernel-infoleak in con_font_get() font.data may not initialize all memory spaces depending on the implementation of vc->vc_sw->con_font_get. This may cause info-leak, so to prevent this, it is safest to modify it to initialize the allocated memory space to 0, and it generally does not affect the overall performance of the system.

Affected products

  • Linux Linux Kernel: from 6.3, before 6.6.58 (fixed in 6.6.58); from 6.7, before 6.11.5 (fixed in 6.11.5); version 6.12 only

Published 2024-10-29. Last modified 2026-06-17.