CVE-2024-25744
HIGHLinux kernel <6.6.7 - Use After Free
Title source: llmDescription
In the Linux kernel before 6.6.7, an untrusted VMM can trigger int80 syscall handling at any given point. This is related to arch/x86/coco/tdx/tdx.c and arch/x86/mm/mem_encrypt_amd.c.
Scores
CVSS v3
8.8
EPSS
0.0005
EPSS Percentile
14.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Classification
CWE
CWE-693
Status
published
Affected Products (1)
linux/linux_kernel
< 6.6.7
Timeline
Published
Feb 12, 2024
Tracked Since
Feb 18, 2026