๐Ÿ” CVE Alert

CVE-2024-50080

MEDIUM 5.5

ublk: don't allow user copy for unprivileged device

CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ublk: don't allow user copy for unprivileged device UBLK_F_USER_COPY requires userspace to call write() on ublk char device for filling request buffer, and unprivileged device can't be trusted. So don't allow user copy for unprivileged device.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Oct 29, 2024
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new medium vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
1172d5b8beca6b899deb9f7f2850e7e47ec16198 < 6414ab5c9c9c068eca6dc4fd3a036bc4b83164dc 1172d5b8beca6b899deb9f7f2850e7e47ec16198 < 8f3d5686a2409877c5e8e2540774d24ed2b4a4ce 1172d5b8beca6b899deb9f7f2850e7e47ec16198 < 42aafd8b48adac1c3b20fe5892b1b91b80c1a1e6
Linux / Linux
6.5

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/6414ab5c9c9c068eca6dc4fd3a036bc4b83164dc git.kernel.org: https://git.kernel.org/stable/c/8f3d5686a2409877c5e8e2540774d24ed2b4a4ce git.kernel.org: https://git.kernel.org/stable/c/42aafd8b48adac1c3b20fe5892b1b91b80c1a1e6