CVE-2024-42265

medium
Published 2025-05-13 · Modified 2024-09-25
CVSS v3
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS v2
VIR risk
5.5

Description

In the Linux kernel, the following vulnerability has been resolved: protect the fetch of ->fd[fd] in do_dup2() from mispredictions both callers have verified that fd is not greater than ->max_fds; however, misprediction might end up with tofree = fdt->fd[fd]; being speculatively executed. That's wrong for the same reasons why it's wrong in close_fd()/file_close_fd_locked(); the same solution applies - array_index_nospec(fd, fdt->max_fds) could differ from fd only in case of speculative execution on mispredicted path.

Predictions

Exploit likelihood
55%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: alma — https://errata.almalinux.org/8/ALSA-2024-7000.html

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2306365

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2305488

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2305467

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2305410

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2303514

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2303508

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2303506

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2303505

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2303077

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301544

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301543

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301522

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301519

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301496

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301489

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2301477

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300713

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300709

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300552

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300533

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300492

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300453

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300448

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300440

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300439

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300434

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300430

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300429

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300414

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300410

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300409

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300408

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300407

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300402

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300381

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300297

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2300296

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2299452

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2299336

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2299240

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2298640

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2298177

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2298140

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2298079

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297909

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297706

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297589

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297582

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297581

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297579

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297573

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297572

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297562

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297561

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297556

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297544

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297543

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297542

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297538

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297525

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297515

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297513

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297496

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297495

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297488

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297478

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297473

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2297471

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2294313

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293658

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293441

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293440

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293423

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293414

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293408

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293377

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293304

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293273

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293270

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2293247

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284634

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284630

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284628

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284596

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284545

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284515

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284511

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2284271

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2283424

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2283389

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282918

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282903

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282890

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282851

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282764

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282757

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282676

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282669

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282648

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282511

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282508

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282440

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282422

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282401

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282366

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282357

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282356

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282355

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282354

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282345

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2282324

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2281847

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2281807

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2281720

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2281704

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2281317

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2281217

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2278447

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2278270

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2278220

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2277171

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2275742

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2275690

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2275661

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2275558

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2273180

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2273148

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2273141

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2272793

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2271796

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2271648

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2270103

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2268295

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2267925

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2267916

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2267795

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2267041

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2267036

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2266750

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2266358

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2265838

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2265799

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2260038

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2258013

vendor Authored 2026-05-27

Vendor advisory: alma — https://bugzilla.redhat.com/2258012

vendor Authored 2026-05-27

Vendor advisory: alma — https://access.redhat.com/errata/RHSA-2024:7000

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2024-42265

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2024-42265.html

vendor Authored 2026-05-27

Vendor advisory: rocky — https://errata.rockylinux.org/RLSA-2024:7000

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/ed42e8ff509d2a61c6642d1825032072dab79f26

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/da72e783afd27d9f487836b2e6738146c0edd149

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/8aa37bde1a7b645816cda8b80df4753ecf172bf1

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/5db999fff545b924b24c9afd368ef5c17279b176

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/41a6c31df77bd8e050136b0a200b537da9e1084a

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/3f480493550b6a23d3a65d095d6569d4a7f56a0f

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/1171ceccabfd596ca370c5d2cbb47d110c3f2fe1

vendor Authored 2026-05-27

Vendor advisory: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 — https://git.kernel.org/stable/c/08775b3d6ed117cf4518754ec7300ee42b6a5368

vendor Authored 2026-05-27

Vendor advisory: redhat — https://access.redhat.com/errata/RHSA-2025:6966

OS impact

OSVersionStatusFixed in
redhat rhel9fixed
rockylinux rocky8fixed
suse slesaffected
debian debianbookwormfixed6.1.106-1
debian debianbullseyefixed5.10.226-1
debian debianforkyfixed6.10.4-1
debian debiansidfixed6.10.4-1
debian debiantrixiefixed6.10.4-1
linux linux-kernelaffected4.19.320
linux linux-kernel6.11affected
almalinux almalinux8fixedkernel-abi-stablelists-4.18.0-553.22.1.el8_10.noarch.rpm

References

Verify integrity in audit chain (admin only). AS-IS.