Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2024-53106

Published: December 3, 2024Last modified: December 3, 2024

Description

In the Linux kernel, the following vulnerability has been resolved: ima: fix buffer overrun in ima_eventdigest_init_common Function ima_eventdigest_init() calls ima_eventdigest_init_common() with HASH_ALGO__LAST which is then used to access the array hash_digest_size[] leading to buffer overrun. Have a conditional statement to handle this.

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSlinux-ltsFixed (6.1.119-r0)
Streamlinux-ltsFixed (6.6.63-r0)

References

ON THIS PAGE