VYPR
Medium severity5.5NVD Advisory· Published Oct 29, 2024· Updated Jun 17, 2026

CVE-2024-50080

CVE-2024-50080

Description

In the Linux kernel, the following vulnerability has been resolved:

ublk: don't allow user copy for unprivileged device

UBLK_F_USER_COPY requires userspace to call write() on ublk char device for filling request buffer, and unprivileged device can't be trusted.

So don't allow user copy for unprivileged device.

Affected products

78

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.