SB20240620147 - Integer overflow in Linux kernel
Published: June 20, 2024
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Integer overflow (CVE-ID: CVE-2023-26242)
The vulnerability allows a local user to execute arbitrary code.
afu_mmio_region_get_by_offset in drivers/fpga/dfl-afu-region.c in the Linux kernel through 6.1.12 has an integer overflow.
Remediation
Install update from vendor's website.