CVE-2024-42068

Source
https://cve.org/CVERecord?id=CVE-2024-42068
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-42068.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-42068
Downstream
Published
2024-07-29T15:52:32.538Z
Modified
2026-05-28T03:53:32.366791315Z
Summary
bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro()
Details

In the Linux kernel, the following vulnerability has been resolved:

bpf: Take return from setmemoryro() into account with bpfproglock_ro()

setmemoryro() can fail, leaving memory unprotected.

Check its return and take it into account as an error.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/42xxx/CVE-2024-42068.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
60a3b2253c413cf601783b070507d7dd6620c954
Fixed
a359696856ca9409fb97655c5a8ef0f549cb6e03
Fixed
e4f602e3ff749ba770bf8ff10196e18358de6720
Fixed
05412471beba313ecded95aa17b25fe84bb2551a
Fixed
7d2cc63eca0c993c99d18893214abf8f85d566d8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-42068.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.18.0
Fixed
5.15.162
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.97
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.9.8

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-42068.json"