CVE-2024-50281
MEDIUM EPSS 7.0%
Published Nov 19, 20241y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Published Nov 19, 2024 1y ago
Last Modified Jun 17, 2026 1w ago
Description
In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: dcp: fix NULL dereference in AEAD crypto operation When sealing or unsealing a key blob we currently do not wait for the AEAD cipher operation to finish and simply return after submitting the request. If there is some load on the system we can exit before the cipher operation is done and the buffer we read from/write to is already removed from the stack. This will e.g. result in NULL pointer dereference errors in the DCP driver during blob creation. Fix this by waiting for the AEAD cipher operation to finish before resuming the seal and unseal calls.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High
Threat Intelligence
EPSS Exploit Probability
7.0% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Weaknesses 1
CWE-476 NULL Pointer Dereference Memory Safety
Affected Products 8
References 2
- git.kernel.org https://git.kernel.org/stable/c/04de7589e0a95167d803ecadd115235ba2c14997
- git.kernel.org https://git.kernel.org/stable/c/c75e0272289eae18c5379518a9c56ef31d65cc7d
Remediation
- git.kernel.org https://git.kernel.org/stable/c/04de7589e0a95167d803ecadd115235ba2c14997
- git.kernel.org https://git.kernel.org/stable/c/c75e0272289eae18c5379518a9c56ef31d65cc7d