CVE-2024-38585

Updated:

Description:

In the Linux kernel, the following vulnerability has been resolved: tools/nolibc/stdlib: fix memory error in realloc() Pass user_p_len to memcpy() instead of heap->len to prevent realloc() from copying an extra sizeof(heap) bytes from beyond the allocated region.

CVSS3: 5.5


Vendor State

OS Vendor version Errata
Ubuntu 24.04 6.8.0-40.40 USN-6949-1

KernelCare State

OS Original kernel version State
Debian 12
Planned
Ubuntu 24.04
Planned