vulnerability

Oracle Linux: CVE-2024-41002: ELSA-2024-12618: Unbreakable Enterprise kernel security update (IMPORTANT)

Severity
5
CVSS
(AV:L/AC:L/Au:M/C:C/I:N/A:P)
Published
Jul 12, 2024
Added
Oct 16, 2024
Modified
May 26, 2025

Description

In the Linux kernel, the following vulnerability has been resolved:
crypto: hisilicon/sec - Fix memory leak for sec resource release
The AIV is one of the SEC resources. When releasing resources,
it need to release the AIV resources at the same time.
Otherwise, memory leakage occurs.
The aiv resource release is added to the sec resource release
function.

Solution

oracle-linux-upgrade-kernel-uek
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.