๐Ÿ” CVE Alert

CVE-2024-53241

UNKNOWN 0.0

x86/xen: don't do PV iret hypercall through hypercall page

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: x86/xen: don't do PV iret hypercall through hypercall page Instead of jumping to the Xen hypercall page for doing the iret hypercall, directly code the required sequence in xen-asm.S. This is done in preparation of no longer using hypercall page at all, as it has shown to cause problems with speculation mitigations. This is part of XSA-466 / CVE-2024-53241.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Dec 24, 2024
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
cdacc1278b12d929f9a053c245ff3d16eb7af9f8 < 05df6e6cd9a76b778aee33c3c18c9f3b3566d4a5 cdacc1278b12d929f9a053c245ff3d16eb7af9f8 < c7b4cfa6213a44fa48714186dfdf125072d036e3 cdacc1278b12d929f9a053c245ff3d16eb7af9f8 < fa719857f613fed94a79da055b13ca51214c694f cdacc1278b12d929f9a053c245ff3d16eb7af9f8 < 82c211ead1ec440dbf81727e17b03b5e3c44b93d cdacc1278b12d929f9a053c245ff3d16eb7af9f8 < f7c3fdad0a474062d566aae3289d490d7e702d30 cdacc1278b12d929f9a053c245ff3d16eb7af9f8 < a2796dff62d6c6bfc5fbebdf2bee0d5ac0438906
Linux / Linux
2.6.27

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/05df6e6cd9a76b778aee33c3c18c9f3b3566d4a5 git.kernel.org: https://git.kernel.org/stable/c/c7b4cfa6213a44fa48714186dfdf125072d036e3 git.kernel.org: https://git.kernel.org/stable/c/fa719857f613fed94a79da055b13ca51214c694f git.kernel.org: https://git.kernel.org/stable/c/82c211ead1ec440dbf81727e17b03b5e3c44b93d git.kernel.org: https://git.kernel.org/stable/c/f7c3fdad0a474062d566aae3289d490d7e702d30 git.kernel.org: https://git.kernel.org/stable/c/a2796dff62d6c6bfc5fbebdf2bee0d5ac0438906 xenbits.xen.org: http://xenbits.xen.org/xsa/advisory-466.html openwall.com: http://www.openwall.com/lists/oss-security/2024/12/17/2 openwall.com: http://www.openwall.com/lists/oss-security/2024/12/23/1 openwall.com: http://www.openwall.com/lists/oss-security/2025/01/05/1 openwall.com: http://www.openwall.com/lists/oss-security/2025/01/05/2 lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html lists.debian.org: https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html