CVE-2024-26621

MEDIUM

Linux Kernel 5.18-6.1.80, 6.2-6.6.45, 6.7-6.7.5 - Denial of Service via Huge Page Alignment

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: mm: huge_memory: don't force huge page alignment on 32 bit commit efa7df3e3bb5 ("mm: align larger anonymous mappings on THP boundaries") caused two issues [1] [2] reported on 32 bit system or compat userspace. It doesn't make too much sense to force huge page alignment on 32 bit system due to the constrained virtual address space. [1] https://lore.kernel.org/linux-mm/[email protected]/ [2] https://lore.kernel.org/linux-mm/CAJuCfpHXLdQy1a2B6xN2d7quTYwg2OoZseYPZTRpU0eHHKD-sQ@mail.gmail.com/

References (27)

Core 27
Core References

Scores

CVSS v3 5.5
EPSS 0.0028
EPSS Percentile 19.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (15)
linux/Kernel 5.18.0 - 6.1.81linux
linux/Kernel 6.2.0 - 6.6.46linux
linux/Kernel 6.7.0 - 6.7.6linux
Linux/Linux < 5.18
Linux/Linux 1854bc6e2420472676c5c90d3d6b15f6cd640e40 - 4ef9ad19e17676b9ef071309bc62020e2373705d
Linux/Linux 1854bc6e2420472676c5c90d3d6b15f6cd640e40 - 6ea9aa8d97e6563676094cb35755884173269555
Linux/Linux 1854bc6e2420472676c5c90d3d6b15f6cd640e40 - 7432376c913381c5f24d373a87ff629bbde94b47
Linux/Linux 1854bc6e2420472676c5c90d3d6b15f6cd640e40 - 87632bc9ecff5ded93433bc0fca428019bdd1cfe
Linux/Linux 5.18
Linux/Linux 6.1.81 - 6.1.*
... and 5 more
Published Mar 02, 2024
Tracked Since Feb 18, 2026