Cyber Resilience

CVE-2024-42261

Linux Kernel 6.8 – 6.10.4

Published
17 August 2024
Modified
03 October 2025
Patch / advisory
CVSS Score v3.1 5.5
Click a component to see what it means
Raw vectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score 0.0020 9th percentile
Risk Priority 41 floored blend · peak EPSS

CVSS and EPSS are reproduced from their sources (NVD, FIRST EPSS). Risk Priority is our own derived reading, not an NVD score.

Summary

CVE-2024-42261 is a medium-severity an unspecified weakness vulnerability in Linux Linux Kernel. Its CVSS base score is 5.5 (Medium).

Operationally, ranked at the 9th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

EU & UK References

Vulnerability Data

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Validate passed in drm syncobj handles in the timestamp extension If userspace provides an unknown or invalid handle anywhere in the handle array the rest of the driver will…

more

not handle that well. Fix it by checking handle was looked up successfully or otherwise fail the extension by jumping into the existing unwind. (cherry picked from commit 8d1276d1b8f738c3afe1457d4dff5cc66fc848a3)

CWE(s)

Related Threats

CVEs Like This One

CVE-2024-49863Same product: Linux Linux Kernel
CVE-2024-42319Same product: Linux Linux Kernel
CVE-2024-38572Same product: Linux Linux Kernel
CVE-2024-35801Same product: Linux Linux Kernel
CVE-2024-38631Same product: Linux Linux Kernel
CVE-2024-46680Same product: Linux Linux Kernel
CVE-2024-50278Same product: Linux Linux Kernel
CVE-2024-38381Same product: Linux Linux Kernel
CVE-2024-50000Same product: Linux Linux Kernel
CVE-2024-50138Same product: Linux Linux Kernel

Affected Assets

linux
linux kernel
6.11 · 6.8 — 6.10.4

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References