5.5
CVSSv3

CVE-2024-23849

Published: 23/01/2024 Updated: 25/03/2024
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel up to and including 6.7.1, there is an off-by-one error for an RDS_MSG_RX_DGRAM_TRACE_MAX comparison, resulting in out-of-bounds access.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

Vendor Advisories

A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel The aoecmd_cfg_pkts() function improperly updates the refcnt on `struct net_device`, and a use-after-free can be triggered by racing between the free on the struct and the access through the `skbtxq` global queue This could lead to a denial of service condition or potentia ...
Description<!---->A vulnerability was found in rds_recv_track_latency in net/rds/af_rdsc in the Linux kernel An off-by-one error exists for an RDS_MSG_RX_DGRAM_TRACE_MAX comparison, resulting in out-of-bounds accessA vulnerability was found in rds_recv_track_latency in net/rds/af_rdsc in the Linux kernel An off-by-one error exists for an RDS_M ...
A flaw has been found in Xen An unprivileged guest can cause Denial of Service (DoS) of the host by sending network packets to the backend, causing the backend to crash (CVE-2023-46838) An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family); Whi ...
A flaw has been found in Xen An unprivileged guest can cause Denial of Service (DoS) of the host by sending network packets to the backend, causing the backend to crash (CVE-2023-46838) An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family); Whi ...
dm_table_create in drivers/md/dm-tablec in the Linux kernel through 674 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctltarget_count (CVE-2023-52429) A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel The aoecmd_cfg_pkts() function improperly ...
An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family); While creating a new netfilter table, lack of a safeguard against invalid nf_tables family (pf) values within `nf_tables_newtable` function enables an attacker to achieve out-of-bounds access ...
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error ...
An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family); While creating a new netfilter table, lack of a safeguard against invalid nf_tables family (pf) values within `nf_tables_newtable` function enables an attacker to achieve out-of-bounds access ...
An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family); While creating a new netfilter table, lack of a safeguard against invalid nf_tables family (pf) values within `nf_tables_newtable` function enables an attacker to achieve out-of-bounds access ...
An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family); While creating a new netfilter table, lack of a safeguard against invalid nf_tables family (pf) values within `nf_tables_newtable` function enables an attacker to achieve out-of-bounds access ...