CVE-2024-53098: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: drm/xe/ufence: Prefetch ufence addr to catch bogus address access_ok() only checks for addr overflow so also try to read the addr to catch invalid addr sent from userspace. (cherry picked from commit 9408c4508483ffc60811e910a93d6425b8e63928)
Affected products
- Linux Linux Kernel: before 6.11.9 (fixed in 6.11.9); version 6.12 only
Published 2024-11-25. Last modified 2026-06-17.