cbcvebase.
CVE-2024-27418
published 2024-05-17

CVE-2024-27418: In the Linux kernel, the following vulnerability has been resolved: net: mctp: take ownership of skb in mctp_local_output Currently, mctp_local_output only…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.4th percentile
In the Linux kernel, the following vulnerability has been resolved: net: mctp: take ownership of skb in mctp_local_output Currently, mctp_local_output only takes ownership of skb on success, and we may leak an skb if mctp_local_output fails in specific states; the skb ownership isn't transferred until the actual output routing occurs. Instead, make mctp_local_output free the skb on all error paths up to the route action, so it always consumes the passed skb.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= 833ef3b91de692ef33b800bca6b1569c39dece74 < a3c8fa54e904b0ddb52a08cc2d8ac239054f61fda3c8fa54e904b0ddb52a08cc2d8ac239054f61fd
linuxlinux>= 833ef3b91de692ef33b800bca6b1569c39dece74 < cbebc55ceacef1fc0651e80e0103cc184552fc68cbebc55ceacef1fc0651e80e0103cc184552fc68
linuxlinux>= 833ef3b91de692ef33b800bca6b1569c39dece74 < a639441c880ac479495e5ab37e3c29f21ae5771ba639441c880ac479495e5ab37e3c29f21ae5771b
linuxlinux>= 833ef3b91de692ef33b800bca6b1569c39dece74 < 3773d65ae5154ed7df404b050fd7387a36ab5ef33773d65ae5154ed7df404b050fd7387a36ab5ef3
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.9-16.7.9-1
linuxlinux_kernel>= 0 < 6.7.9-16.7.9-1
linuxlinux_kernel>= 5.15 < 6.1.816.1.81
linuxlinux_kernel>= 6.2 < 6.6.216.6.21
linuxlinux_kernel>= 6.7 < 6.7.96.7.9
msrccbl2_hyperv-daemons_5.15.158.2-1_on_cbl_mariner_2.0
msrccbl2_hyperv-daemons_5.15.167.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.