Microsoft Security Response Center guidance
Vendor revision: Aug 12, 2026CBL-Mariner Releases
Vendor-listed releases
- 5.15.173.1-1
- 6.6.64.2-1
Linux Kernel Use of Uninitialized Resource Vulnerability
CISA lists CVE-2024-50302 in its Known Exploited Vulnerabilities catalog, which means exploitation has been observed. The entry applies to Linux Kernel.
CBL-Mariner Releases
Vendor-listed releases
In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since the report buffer is used by all kinds of drivers in various ways, let's zero-initialize it during allocation to make sure that it can't be ever used to leak kernel memory via specially-crafted report.
Source: NVD