VDB
BDU%3A2024-06989
BDU%3A2024-06989
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость компонента arch/x86/kernel/fpu/xstate.c ядра операционной системы Linux, связанная с использованием памяти после её освобождения, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, ООО «Ред Софт», АО "НППКТ", ООО «РусБИТех-Астра», АО «НТЦ ИТ РОСА» | Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913), Astra Linux Special Edition (запись в едином реестре российских программ №369), ROSA Virtualization 3.0 (запись в едином реестре российских программ №21308) |
Timeline
- Sep 13, 2024 CVE Published
- Aug 19, 2025 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- https://git.kernel.org/linus/10e4b5166df9ff7a2d5316138ca668b42d004422 url
- https://git.kernel.org/stable/c/10e4b5166df9ff7a2d5316138ca668b42d004422 url
- https://git.kernel.org/stable/c/1acbca933313aa866e39996904c9aca4d435c4cd url
- https://git.kernel.org/stable/c/21c7c00dae55cb0e3810d5f9506b58f68475d41d url
- https://git.kernel.org/stable/c/92b0f04e937665bde5768f3fcc622dcce44413d8 url
- https://git.kernel.org/stable/c/b61e3b7055ac6edee4be071c52f48c26472d2624 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.84 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.24 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.7.12 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.8.3 url
- https://lore.kernel.org/linux-cve-announce/2024051738-CVE-2024-35801-8038@gregkh/ url
- https://nvd.nist.gov/vuln/detail/CVE-2024-35801 url
- https://security-tracker.debian.org/tracker/CVE-2024-35801 url
- https://ubuntu.com/security/notices/USN-6816-1 url
- https://ubuntu.com/security/notices/USN-6817-1 url
- https://ubuntu.com/security/notices/USN-6817-2 url
- https://ubuntu.com/security/notices/USN-6817-3 url
- https://ubuntu.com/security/notices/USN-6878-1 url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2024-0905SE18MD url
- https://www.cve.org/CVERecord?id=CVE-2024-35801 url
…and 3 more