Updated:
Description:
In the Linux kernel, the following vulnerability has been resolved: tty: Fix out-of-bound vmalloc access in imageblit This issue happens when a userspace program does an ioctl FBIOPUT_VSCREENINFO passing the fb_var_screeninfo struct containing only the fields xres, yres, and bits_per_pixel with values. If this struct is the same as the previous ioctl, the vc_resize() detects it and doesn't call the resize_screen(), leaving the fb_var_screeninfo incomplete. And this leads to the updatescrollmode() calculates a wrong value to fbcon_display->vrows, which makes the real_y() return a wrong value of y, and that value, eventually, causes the imageblit to access an out-of-bound address value. To solve this issue I made the resize_screen() be called even if the screen does not need any resizing, so it will "fix and fill" the fb_var_screeninfo independently.
CVSS3: 7.1
| OS | Vendor version | Errata |
|---|---|---|
| Ubuntu 18.04 | 4.15.0-163.171 | USN-5164-1 |
| Amazon Linux 2 | 4.14.252-195.481.amzn2 | ALAS2-2021-1719 |
| RHEL 8 | 4.18.0-553.22.1.el8_10 | RHSA-2024:7000 |
| Debian 10 | 4.19.232-1 | DSA-5096-1 |
| Oracle Linux 8 | 4.18.0-553.22.1.el8_10 | ELSA-2024-7000 |
| Ubuntu 20.04 | 5.4.0-91.102 | USN-5163-1 |
| Ubuntu 18.04 AWS Focal | 5.4.0-1060.63~18.04.1 | USN-5163-1 |
| AlmaLinux 8 | 4.18.0-553.22.1.el8_10 | ALSA-2024:7000 |
| Rocky Linux 8 | 4.18.0-553.22.1.el8_10 | RLSA-2024:7000 |
| RHEL 9 | 5.14.0-427.42.1.el9_4 | RHSA-2024:8617 |
| Oracle Linux 9 | 5.14.0-427.42.1.el9_4 | ELSA-2024-8617 |
| Rocky Linux 9 | 5.14.0-427.42.1.el9_4 | RLSA-2024:8617 |
| AlmaLinux 9 | 5.14.0-427.42.1.el9_4 | ALSA-2024:8617 |
| Amazon Linux 2 5.4 | 5.4.156-83.273.amzn2 | ALAS2KERNEL-5.4-2025-099 |
| Amazon Linux 2 5.10 | 5.10.75-79.358.amzn2 | ALAS2KERNEL-5.10-2022-007 |
| CentOS 7 ELS | 3.10.0-1160.119.1.el7.tuxcare.els3 | CLSA-2024:1724693366 |
| OS | Original kernel version | State |
|---|---|---|
| Ubuntu 18.04 | |
Will Not Fix |
| Amazon Linux 2 | |
Planned |
| RHEL 8 |
4.18.0-147.0.2.el8_1
show all
hide all
4.18.0-147.0.3.el8_1
4.18.0-147.3.1.el8_1
4.18.0-147.5.1.el8_1
4.18.0-147.8.1.el8_1
4.18.0-147.el8
4.18.0-193.1.2.el8_2
4.18.0-193.13.2.el8_2
4.18.0-193.14.3.el8_2
4.18.0-193.19.1.el8_2
4.18.0-193.28.1.el8_2
4.18.0-193.6.3.el8_2
4.18.0-193.el8
4.18.0-240.1.1.el8_3
4.18.0-240.10.1.el8_3
4.18.0-240.15.1.el8_3
4.18.0-240.22.1.el8_3
4.18.0-240.8.1.el8_3
4.18.0-240.el8
4.18.0-305.10.2.el8_4
4.18.0-305.12.1.el8_4
4.18.0-305.17.1.el8_4
4.18.0-305.19.1.el8_4
4.18.0-305.25.1.el8_4
4.18.0-305.3.1.el8_4
4.18.0-305.7.1.el8_4
4.18.0-305.el8
4.18.0-348.12.2.el8_5
4.18.0-348.2.1.el8_5
4.18.0-348.20.1.el8_5
4.18.0-348.23.1.el8_5
4.18.0-348.7.1.el8_5
4.18.0-348.el8
4.18.0-372.13.1.el8_6
4.18.0-372.16.1.el8_6
4.18.0-372.19.1.el8_6
4.18.0-372.26.1.el8_6
4.18.0-372.32.1.el8_6
4.18.0-372.9.1.el8
4.18.0-425.10.1.el8_7
4.18.0-425.13.1.el8_7
4.18.0-425.19.2.el8_7
4.18.0-425.3.1.el8
4.18.0-477.10.1.el8_8
4.18.0-477.13.1.el8_8
4.18.0-477.15.1.el8_8
4.18.0-477.21.1.el8_8
4.18.0-477.27.1.el8_8
4.18.0-513.11.1.el8_9
4.18.0-513.18.1.el8_9
4.18.0-513.24.1.el8_9
4.18.0-513.5.1.el8_9
4.18.0-513.9.1.el8_9
4.18.0-553.16.1.el8_10
4.18.0-553.5.1.el8_10
4.18.0-553.8.1.el8_10
4.18.0-553.el8_10
4.18.0-80.1.2.el8_0
4.18.0-80.11.1.el8_0
4.18.0-80.11.2.el8_0
4.18.0-80.4.2.el8_0
4.18.0-80.7.1.el8_0
4.18.0-80.7.2.el8_0
4.18.0-80.el8
|
Released |
| Debian 10 | |
Planned |
| Oracle Linux 8 |
4.18.0-147.0.2.el8_1
show all
hide all
4.18.0-147.0.3.el8_1
4.18.0-147.3.1.el8_1
4.18.0-147.5.1.el8_1
4.18.0-147.8.1.el8_1
4.18.0-147.el8
4.18.0-193.1.2.el8_2
4.18.0-193.13.2.el8_2
4.18.0-193.14.3.el8_2
4.18.0-193.19.1.el8_2
4.18.0-193.28.1.el8_2
4.18.0-193.6.3.el8_2
4.18.0-193.el8
4.18.0-240.1.1.el8_3
4.18.0-240.10.1.el8_3
4.18.0-240.15.1.el8_3
4.18.0-240.22.1.el8_3
4.18.0-240.8.1.el8_3
4.18.0-240.el8
4.18.0-305.10.2.el8_4
4.18.0-305.12.1.el8_4
4.18.0-305.17.1.el8_4
4.18.0-305.19.1.el8_4
4.18.0-305.25.1.el8_4
4.18.0-305.3.1.el8_4
4.18.0-305.7.1.el8_4
4.18.0-305.el8
4.18.0-348.12.2.el8_5
4.18.0-348.2.1.el8_5
4.18.0-348.20.1.el8_5
4.18.0-348.23.1.el8_5
4.18.0-348.7.1.el8_5
4.18.0-348.el8
4.18.0-372.13.1.0.1.el8_6
4.18.0-372.16.1.0.1.el8_6
4.18.0-372.19.1.0.1.el8_6
4.18.0-372.26.1.0.1.el8_6
4.18.0-372.32.1.0.1.el8_6
4.18.0-372.9.1.el8
4.18.0-425.10.1.el8_7
4.18.0-425.13.1.el8_7
4.18.0-425.19.2.el8_7
4.18.0-425.3.1.el8
4.18.0-477.10.1.el8_8
4.18.0-477.13.1.el8_8
4.18.0-477.15.1.el8_8
4.18.0-477.21.1.el8_8
4.18.0-477.27.0.1.el8_8
4.18.0-477.27.1.el8_8
4.18.0-513.11.0.1.el8_9
4.18.0-513.18.0.1.el8_9
4.18.0-513.18.0.2.el8_9
4.18.0-513.18.1.0.1.el8_9
4.18.0-513.18.1.el8_9
4.18.0-513.24.1.el8_9
4.18.0-513.5.1.el8_9
4.18.0-513.9.1.el8_9
4.18.0-553.16.1.el8_10
4.18.0-553.5.1.el8_10
4.18.0-553.8.1.el8_10
4.18.0-553.el8_10
4.18.0-80.1.2.el8_0
4.18.0-80.11.1.el8_0
4.18.0-80.11.2.el8_0
4.18.0-80.4.2.el8_0
4.18.0-80.7.1.el8_0
4.18.0-80.7.2.el8_0
4.18.0-80.el8
|
Released |
| CloudLinux OS 8 |
4.18.0-147.0.3.lve.el8
show all
hide all
4.18.0-147.3.1.el8.lve.1
4.18.0-147.8.1.el8.lve.1
4.18.0-147.8.1.el8.lve
4.18.0-193.28.1.lve1.el8
4.18.0-305.10.2.2.lve.el8
4.18.0-553.lve.el8
4.18.0-305.10.2.lve.el8
4.18.0-305.12.1.lve.el8
4.18.0-305.17.1.lve.el8
4.18.0-305.19.1.lve.el8
4.18.0-305.7.1.lve.el8
4.18.0-305.lve.el8
4.18.0-348.12.2.lve.el8
4.18.0-348.20.1.lve.1.el8
4.18.0-348.20.1.lve.el8
4.18.0-348.23.1.lve.el8
4.18.0-348.7.1.lve.el8
4.18.0-348.lve.el8
4.18.0-372.13.1.lve.el8
4.18.0-372.16.1.lve.el8
4.18.0-372.19.1.lve.el8
4.18.0-372.26.1.lve.1.el8
4.18.0-372.32.1.lve.el8
4.18.0-372.9.1.1.lve.el8
4.18.0-372.9.1.lve.el8
4.18.0-425.10.1.lve.el8
4.18.0-425.13.1.lve.el8
4.18.0-425.19.2.lve.el8
4.18.0-425.3.1.lve.1.el8
4.18.0-425.3.1.lve.2.el8
4.18.0-425.3.1.lve.3.el8
4.18.0-425.3.1.lve.el8
4.18.0-477.10.1.lve.el8
4.18.0-477.13.1.lve.1.el8
4.18.0-477.13.1.lve.el8
4.18.0-477.15.1.lve.2.el8
4.18.0-477.21.1.lve.1.el8
4.18.0-477.21.1.lve.el8
4.18.0-477.27.1.lve.el8
4.18.0-477.27.2.lve.el8
4.18.0-513.11.1.lve.el8
4.18.0-513.18.1.lve.1.el8
4.18.0-513.18.1.lve.2.el8
4.18.0-513.18.1.lve.el8
4.18.0-513.24.1.lve.1.el8
4.18.0-513.24.1.lve.2.el8
4.18.0-513.24.1.lve.el8
4.18.0-513.5.1.lve.el8
4.18.0-513.9.1.lve.el8
4.18.0-544.lve.el8
4.18.0-553.16.1.lve.1.el8
4.18.0-553.16.1.lve.el8
4.18.0-553.5.1.lve.1.el8
4.18.0-553.5.1.lve.el8
4.18.0-553.8.1.lve.el8
|
Released |
| CloudLinux OS 7h |
4.18.0-147.0.3.el7h.lve
show all
hide all
4.18.0-147.0.3.el7h
4.18.0-147.3.1.el7h.lve.1
4.18.0-147.8.1.el7h.lve.1
4.18.0-147.8.1.el7h.lve
4.18.0-553.16.1.lve.el7h
4.18.0-193.28.1.lve1.el7h
4.18.0-305.10.2.2.lve.el7h
4.18.0-305.10.2.lve.el7h
4.18.0-305.12.1.lve.el7h
4.18.0-305.17.1.lve.el7h
4.18.0-305.19.1.lve.el7h
4.18.0-305.7.1.lve.el7h
4.18.0-305.lve.el7h
4.18.0-348.12.2.lve.1.el7h
4.18.0-348.12.2.lve.2.el7h
4.18.0-348.12.2.lve.el7h
4.18.0-348.20.1.lve.1.el7h
4.18.0-348.20.1.lve.el7h
4.18.0-348.23.1.lve.el7h
4.18.0-348.7.1.lve.el7h
4.18.0-348.lve.el7h
4.18.0-372.13.1.lve.el7h
4.18.0-372.16.1.lve.el7h
4.18.0-372.19.1.lve.el7h
4.18.0-372.26.1.lve.1.el7h
4.18.0-372.32.1.lve.el7h
4.18.0-372.9.1.lve.el7h
4.18.0-425.10.1.lve.el7h
4.18.0-425.13.1.lve.el7h
4.18.0-425.19.2.lve.el7h
4.18.0-425.3.1.lve.1.el7h
4.18.0-425.3.1.lve.2.el7h
4.18.0-425.3.1.lve.3.el7h
4.18.0-425.3.1.lve.el7h
4.18.0-477.10.1.lve.1.el7h
4.18.0-477.13.1.lve.1.el7h
4.18.0-477.13.1.lve.el7h
4.18.0-477.15.1.lve.1.el7h
4.18.0-477.15.1.lve.2.el7h
4.18.0-477.21.1.lve.1.el7h
4.18.0-477.21.1.lve.el7h
4.18.0-477.27.1.lve.el7h
4.18.0-477.27.2.lve.el7h
4.18.0-513.11.1.lve.1.el7h
4.18.0-513.11.1.lve.el7h
4.18.0-513.18.1.lve.1.el7h
4.18.0-513.18.1.lve.2.el7h
4.18.0-513.18.1.lve.el7h
4.18.0-513.24.1.lve.1.el7h
4.18.0-513.24.1.lve.2.el7h
4.18.0-513.24.1.lve.el7h
4.18.0-513.5.1.lve.el7h
4.18.0-513.9.1.lve.el7h
4.18.0-553.16.1.lve.1.el7h
4.18.0-553.5.1.lve.1.el7h
4.18.0-553.5.1.lve.el7h
4.18.0-553.8.1.lve.el7h
4.18.0-553.lve.el7h
4.18.0-80.7.2.el7h
|
Released |
| Ubuntu 20.04 | |
Planned |
| Ubuntu 18.04 AWS Focal | |
Planned |
| AlmaLinux 8 |
4.18.0-240.15.1.el8_3
show all
hide all
4.18.0-240.22.1.el8_3
4.18.0-240.el8
4.18.0-305.10.2.el8_4
4.18.0-305.12.1.el8_4
4.18.0-305.17.1.el8_4
4.18.0-305.19.1.el8_4
4.18.0-305.25.1.el8_4
4.18.0-305.3.1.el8_4
4.18.0-305.7.1.el8_4
4.18.0-305.el8
4.18.0-348.12.2.el8_5
4.18.0-348.2.1.el8_5
4.18.0-348.20.1.el8_5
4.18.0-348.23.1.el8_5
4.18.0-348.7.1.el8_5
4.18.0-348.el8
4.18.0-372.13.1.el8_6
4.18.0-372.16.1.el8_6
4.18.0-372.19.1.el8_6
4.18.0-372.26.1.el8_6
4.18.0-372.32.1.el8_6
4.18.0-372.9.1.el8
4.18.0-425.10.1.el8_7
4.18.0-425.13.1.el8_7
4.18.0-425.19.2.el8_7
4.18.0-425.3.1.el8
4.18.0-477.10.1.el8_8
4.18.0-477.13.1.el8_8
4.18.0-477.15.1.el8_8
4.18.0-477.21.1.el8_8
4.18.0-477.27.1.el8_8
4.18.0-477.27.2.el8_8
4.18.0-513.11.1.el8_9
4.18.0-513.18.1.el8_9
4.18.0-513.18.2.el8_9
4.18.0-513.24.1.el8_9
4.18.0-513.5.1.el8_9
4.18.0-513.9.1.el8_9
4.18.0-553.16.1.el8_10
4.18.0-553.5.1.el8_10
4.18.0-553.8.1.el8_10
4.18.0-553.el8_10
|
Released |
| Rocky Linux 8 |
4.18.0-372.16.1.el8_6
show all
hide all
4.18.0-372.19.1.el8_6
4.18.0-372.26.1.el8_6
4.18.0-372.32.1.el8_6
4.18.0-372.9.1.el8
4.18.0-425.10.1.el8_7
4.18.0-477.15.1.el8_8
4.18.0-477.21.1.el8_8
4.18.0-477.27.1.el8_8
4.18.0-513.11.1.el8_9.0.1
4.18.0-513.11.1.el8_9
4.18.0-513.18.1.el8_9
4.18.0-513.24.1.el8_9
4.18.0-513.5.1.el8_9
4.18.0-513.9.1.el8_9
4.18.0-553.16.1.el8_10
4.18.0-553.5.1.el8_10
4.18.0-553.8.1.el8_10
4.18.0-553.el8_10
4.18.0-305.10.2.el8_4
4.18.0-305.12.1.el8_4
4.18.0-305.17.1.el8_4
4.18.0-305.19.1.el8_4
4.18.0-305.25.1.el8_4
4.18.0-305.3.1.el8_4
4.18.0-305.7.1.el8_4
4.18.0-348.12.2.el8_5
4.18.0-348.2.1.el8_5
4.18.0-348.20.1.el8_5
4.18.0-348.23.1.el8_5
4.18.0-348.7.1.el8_5
4.18.0-372.13.1.el8_6
4.18.0-372.16.1.el8_6.0.1
4.18.0-425.13.1.el8_7
4.18.0-425.19.2.el8_7
4.18.0-425.3.1.el8
4.18.0-477.10.1.el8_8
4.18.0-477.13.1.el8_8
|
Released |
| RHEL 9 |
5.14.0-427.33.1.el9_4
show all
hide all
5.14.0-427.35.1.el9_4
5.14.0-427.37.1.el9_4
5.14.0-427.40.1.el9_4
5.14.0-70.13.1.el9_0
5.14.0-70.17.1.el9_0
5.14.0-70.22.1.el9_0
5.14.0-70.26.1.el9_0
5.14.0-70.30.1.el9_0
5.14.0-70.5.1.el9_0
5.14.0-162.12.1.el9_1
5.14.0-162.18.1.el9_1
5.14.0-162.22.2.el9_1
5.14.0-162.23.1.el9_1
5.14.0-162.6.1.el9_1
5.14.0-284.11.1.el9_2
5.14.0-284.18.1.el9_2
5.14.0-284.25.1.el9_2
5.14.0-284.30.1.el9_2
5.14.0-362.13.1.el9_3
5.14.0-362.18.1.el9_3
5.14.0-362.24.1.el9_3
5.14.0-362.8.1.el9_3
5.14.0-427.13.1.el9_4
5.14.0-427.16.1.el9_4
5.14.0-427.18.1.el9_4
5.14.0-427.20.1.el9_4
5.14.0-427.22.1.el9_4
5.14.0-427.24.1.el9_4
5.14.0-427.26.1.el9_4
5.14.0-427.28.1.el9_4
5.14.0-427.31.1.el9_4
|
Released |
| Oracle Linux 9 |
5.14.0-427.37.1.el9_4
show all
hide all
5.14.0-427.40.1.el9_4
5.14.0-70.13.1.0.3.el9_0
5.14.0-70.17.1.0.1.el9_0
5.14.0-70.22.1.0.1.el9_0
5.14.0-70.26.1.0.1.el9_0
5.14.0-70.30.1.0.1.el9_0
5.14.0-162.12.1.el9_1
5.14.0-162.18.1.el9_1
5.14.0-162.22.2.el9_1
5.14.0-162.23.1.el9_1
5.14.0-162.6.1.el9_1
5.14.0-284.11.1.el9_2
5.14.0-284.18.1.el9_2
5.14.0-284.25.1.0.1.el9_2
5.14.0-284.25.1.el9_2
5.14.0-284.30.0.1.el9_2
5.14.0-284.30.1.el9_2
5.14.0-362.13.0.1.el9_3
5.14.0-362.13.1.el9_3
5.14.0-362.18.0.1.el9_3
5.14.0-362.18.0.2.el9_3
5.14.0-362.18.1.el9_3
5.14.0-362.24.1.0.1.el9_3
5.14.0-362.24.1.0.2.el9_3
5.14.0-362.24.1.el9_3
5.14.0-362.8.1.el9_3
5.14.0-427.13.1.el9_4
5.14.0-427.16.1.el9_4
5.14.0-427.18.1.el9_4
5.14.0-427.20.1.el9_4
5.14.0-427.22.1.el9_4
5.14.0-427.24.1.el9_4
5.14.0-427.26.1.el9_4
5.14.0-427.28.1.el9_4
5.14.0-427.31.1.el9_4
5.14.0-427.33.1.el9_4
5.14.0-427.35.1.el9_4
|
Released |
| Rocky Linux 9 |
5.14.0-162.12.1.el9_1.0.1
show all
hide all
5.14.0-162.12.1.el9_1.0.2
5.14.0-162.18.1.el9_1
5.14.0-162.22.2.el9_1
5.14.0-162.23.1.el9_1
5.14.0-162.6.1.el9_1.0.1
5.14.0-162.6.1.el9_1
5.14.0-284.30.1.el9_2
5.14.0-362.13.1.el9_3
5.14.0-362.18.1.el9_3.0.1
5.14.0-362.18.1.el9_3
5.14.0-362.24.1.el9_3.0.1
5.14.0-362.24.1.el9_3
5.14.0-362.8.1.el9_3
5.14.0-427.16.1.el9_4
5.14.0-427.18.1.el9_4
5.14.0-427.20.1.el9_4.0.1
5.14.0-427.20.1.el9_4
5.14.0-427.22.1.el9_4
5.14.0-427.24.1.el9_4
5.14.0-427.26.1.el9_4
5.14.0-427.28.1.el9_4
5.14.0-427.31.1.el9_4
5.14.0-427.33.1.el9_4
5.14.0-427.35.1.el9_4
5.14.0-427.37.1.el9_4
5.14.0-427.40.1.el9_4
5.14.0-70.22.1.el9_0
5.14.0-70.26.1.el9_0
5.14.0-70.30.1.el9_0
5.14.0-284.11.1.el9_2
5.14.0-427.13.1.el9_4
|
Released |
| AlmaLinux 9 |
5.14.0-162.18.1.el9_1
show all
hide all
5.14.0-162.22.2.el9_1
5.14.0-162.23.1.el9_1
5.14.0-162.6.1.el9_1
5.14.0-284.11.1.el9_2
5.14.0-284.18.1.el9_2
5.14.0-284.25.1.el9_2
5.14.0-284.30.1.el9_2
5.14.0-362.13.1.el9_3
5.14.0-362.18.1.el9_3
5.14.0-362.24.1.el9_3
5.14.0-362.24.2.el9_3
5.14.0-362.8.1.el9_3
5.14.0-427.13.1.el9_4
5.14.0-427.16.1.el9_4
5.14.0-427.18.1.el9_4
5.14.0-427.20.1.el9_4
5.14.0-427.22.1.el9_4
5.14.0-427.24.1.el9_4
5.14.0-427.26.1.el9_4
5.14.0-427.28.1.el9_4
5.14.0-427.31.1.el9_4
5.14.0-427.33.1.el9_4
5.14.0-427.35.1.el9_4
5.14.0-427.37.1.el9_4
5.14.0-70.22.1.el9_0
5.14.0-70.26.1.el9_0
5.14.0-70.30.1.el9_0
5.14.0-162.12.1.el9_1
5.14.0-427.40.1.el9_4
5.14.0-70.13.1.el9_0
5.14.0-70.17.1.el9_0
|
Released |
| Amazon Linux 2 5.4 | |
Will Not Fix |
| Amazon Linux 2 5.10 | |
Will Not Fix |
| CentOS 7 ELS | |
Ready For Release |