๐Ÿ” CVE Alert

CVE-2024-49850

UNKNOWN 0.0

bpf: correctly handle malformed BPF_CORE_TYPE_ID_LOCAL relos

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: bpf: correctly handle malformed BPF_CORE_TYPE_ID_LOCAL relos In case of malformed relocation record of kind BPF_CORE_TYPE_ID_LOCAL referencing a non-existing BTF type, function bpf_core_calc_relo_insn would cause a null pointer deference. Fix this by adding a proper check upper in call stack, as malformed relocation records could be passed from user space. Simplest reproducer is a program: r0 = 0 exit With a single relocation record: .insn_off = 0, /* patch first instruction */ .type_id = 100500, /* this type id does not exist */ .access_str_off = 6, /* offset of string "0" */ .kind = BPF_CORE_TYPE_ID_LOCAL, See the link for original reproducer or next commit for a test case.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Oct 21, 2024
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
74753e1462e77349525daf9eb60ea21ed92d3a97 < dc7ce14f00bcd50641f2110b7a32aa6552e0780f 74753e1462e77349525daf9eb60ea21ed92d3a97 < 2288b54b96dcb55bedebcef3572bb8821fc5e708 74753e1462e77349525daf9eb60ea21ed92d3a97 < 584cd3ff792e1edbea20b2a7df55897159b0be3e 74753e1462e77349525daf9eb60ea21ed92d3a97 < e7e9c5b2dda29067332df2a85b0141a92b41f218 74753e1462e77349525daf9eb60ea21ed92d3a97 < 3d2786d65aaa954ebd3fcc033ada433e10da21c4
Linux / Linux
5.17

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/dc7ce14f00bcd50641f2110b7a32aa6552e0780f git.kernel.org: https://git.kernel.org/stable/c/2288b54b96dcb55bedebcef3572bb8821fc5e708 git.kernel.org: https://git.kernel.org/stable/c/584cd3ff792e1edbea20b2a7df55897159b0be3e git.kernel.org: https://git.kernel.org/stable/c/e7e9c5b2dda29067332df2a85b0141a92b41f218 git.kernel.org: https://git.kernel.org/stable/c/3d2786d65aaa954ebd3fcc033ada433e10da21c4 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html