REDHAT-BUG-2345615
The Linux Kernel lockdown mode for kernel versions starting on 6.12 and above for Fedora Linux has the lockdown mode disabled without any warning. This may allow an attacker to gain access to sensitive information such kernel memory mappings, I/O ports, BPF and kprobes. Additionally unsigned modules can be loaded, leading to execution of untrusted code breaking breaking any Secure Boot protection. This vulnerability affects only Fedora Linux.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2345615?
The severity of REDHAT-BUG-2345615 is high due to the potential exposure of sensitive information.
How do I fix REDHAT-BUG-2345615?
To fix REDHAT-BUG-2345615, ensure that kernel lockdown mode is explicitly enabled in your kernel configuration.
What versions of Fedora Linux are affected by REDHAT-BUG-2345615?
Fedora Linux Kernel versions starting from 6.12 are affected by REDHAT-BUG-2345615.
What issues can REDHAT-BUG-2345615 cause?
REDHAT-BUG-2345615 may allow attackers to access sensitive data such as kernel memory mappings and I/O ports.
Is there a workaround for REDHAT-BUG-2345615?
A potential workaround for REDHAT-BUG-2345615 is to manually enable the kernel lockdown feature in the system settings.