oM noM Security Feeds cve
vulnerability context

CVE-2024-50182

CVSS 5.5 MEDIUMEPSS 13%

In the Linux kernel, the following vulnerability has been resolved: secretmem: disable memfd_secret() if arch cannot set direct map Return -ENOSYS from memfd_secret() syscall if !can_set_direct_map(). This is the case for example on some arm64 configurations, where marking 4k PTEs in the direct map not present can only be done if the direct map is set up at 4k granularity in the first place (as ARM's break-before-make semantics do not easily allow breaking apart large/gigantic pages). More precisely, on arm64 systems with !can_set_direct_map(), set_direct_map_invalid_noflush() is a no-op, ...

Published 2024-11-08 · last modified 2025-11-03

details

CISA KEV status
Not in catalog
CVSS v3
5.5 / MEDIUM
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS
13% percentile (score 0.0022)
OTX pulses
0 total, 0 recent

source mentions 2

Want the 3-bullet summary of CVE-2024-50182, plus webhook alerts when KEV is updated? Pro is $10/mo.