vulnerability
Ubuntu: (CVE-2024-26911): linux-raspi-realtime vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:L/Au:S/C:N/I:P/A:N) | Apr 17, 2024 | Feb 11, 2025 | Apr 16, 2026 |
Severity
2
CVSS
(AV:L/AC:L/Au:S/C:N/I:P/A:N)
Published
Apr 17, 2024
Added
Feb 11, 2025
Modified
Apr 16, 2026
Description
In the Linux kernel, the following vulnerability has been resolved:
drm/buddy: Fix alloc_range() error handling code
Few users have observed display corruption when they boot
the machine to KDE Plasma or playing games. We have root
caused the problem that whenever alloc_range() couldn't
find the required memory blocks the function was returning
SUCCESS in some of the corner cases.
The right approach would be if the total allocated size
is less than the required size, the function should
return -ENOSPC.
Solution
ubuntu-upgrade-linux-raspi-realtime
References
- CVE-2024-26911
- https://attackerkb.com/topics/CVE-2024-26911
- CWE-755
- EUVD-EUVD-2024-24173
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-24173
- https://git.kernel.org/linus/8746c6c9dfa31d269c65dd52ab42fde0720b7d91
- https://git.kernel.org/stable/c/4b59c3fada06e5e8010ef7700689c71986e667a2
- https://git.kernel.org/stable/c/8746c6c9dfa31d269c65dd52ab42fde0720b7d91
- https://www.cve.org/CVERecord?id=CVE-2024-26911
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.