kernel CVE-2024-0646
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.19.1
Patched versions
1.19.1
kernel-5.15
(bottlerocket)
< 1.19.1
1.19.1
An out-of-bounds memory write flaw was found in the Linux kernel's Transport Layer Security functionality in how a user calls a function splice with a ktls socket as the destination. This flaw could lead to crash or potential escalation of privileges on the system.