VYPR
High severity7.8NVD Advisory· Published Apr 3, 2024· Updated Jun 17, 2026

CVE-2024-26753

CVE-2024-26753

Description

In the Linux kernel, the following vulnerability has been resolved:

crypto: virtio/akcipher - Fix stack overflow on memcpy

sizeof(struct virtio_crypto_akcipher_session_para) is less than sizeof(struct virtio_crypto_op_ctrl_req::u), copying more bytes from stack variable leads stack overflow. Clang reports this issue by commands: make -j CC=clang-14 mrproper >/dev/null 2>&1 make -j O=/tmp/crypto-build CC=clang-14 allmodconfig >/dev/null 2>&1 make -j O=/tmp/crypto-build W=1 CC=clang-14 drivers/crypto/virtio/ virtio_crypto_akcipher_algs.o

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
  • Linux/Kernel8 versions
    cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=5.10.209,<5.10.212
    • cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.8:rc3:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.8:rc4:*:*:*:*:*:*
    • cpe:2.3:o:linux:linux_kernel:6.8:rc5:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: 5.18
  • osv-coords
    Range: < 5.10.212

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.