CVE-2024-53098: Linux Kernel

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: drm/xe/ufence: Prefetch ufence addr to catch bogus address access_ok() only checks for addr overflow so also try to read the addr to catch invalid addr sent from userspace. (cherry picked from commit 9408c4508483ffc60811e910a93d6425b8e63928)

Affected products

  • Linux Linux Kernel: before 6.11.9 (fixed in 6.11.9); version 6.12 only

Published 2024-11-25. Last modified 2026-06-17.