CVE-2024-50091 Information

Description

In the Linux kernel the following vulnerability has been resolved:

dm vdo: don’t refer to dedupe_context after releasing it

Clear the dedupe_context pointer in a data_vio whenever ownership of the context is lost so that vdo can’t examine it accidentally.

Reference

https://git.kernel.org/stable/c/63ef073084c67878d7a92e15ad055172da3f05a3 https://git.kernel.org/stable/c/0808ebf2f80b962e75741a41ced372a7116f1e26

Share on: