Bug 33195 - kernel new security issue CVE-2024-26925
Summary: kernel new security issue CVE-2024-26925
Status: RESOLVED FIXED
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal normal
Target Milestone: ---
Assignee: Kernel and Drivers maintainers
QA Contact: Sec team
URL:
Whiteboard: MGA9TOO
Keywords:
Depends on:
Blocks:
 
Reported: 2024-05-13 09:57 CEST by Nicolas Salguero
Modified: 2024-06-11 10:27 CEST (History)
1 user (show)

See Also:
Source RPM: kernel-6.6.28-1.mga10.src.rpm
CVE: CVE-2024-26925
Status comment: Patch available from upstream


Attachments

Description Nicolas Salguero 2024-05-13 09:57:34 CEST
That CVE was announced here:
https://www.openwall.com/lists/oss-security/2024/05/07/6

The fix is: https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit/?id=0d459e2ffb54

Mageia 9 is also affected.
Nicolas Salguero 2024-05-13 09:58:09 CEST

Source RPM: (none) => kernel-6.6.28-1.mga10.src.rpm
Whiteboard: (none) => MGA9TOO
CVE: (none) => CVE-2024-26925
Status comment: (none) => Patch available from upstream

Morgan Leijström 2024-05-13 14:07:14 CEST

CC: (none) => fri
Assignee: bugsquad => kernel

Comment 1 Nicolas Salguero 2024-06-11 10:27:42 CEST
Actually, according to https://www.cve.org/CVERecord?id=CVE-2024-26925, that CVE was fixed in 6.6.26.

Status: NEW => RESOLVED
Resolution: (none) => FIXED


Note You need to log in before you can comment on or make changes to this bug.