⚠ Actively exploited
Added to CISA KEV on 2024-08-07. Federal agencies required to patch by 2024-08-28. Required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable..

CVE-2024-36971Use After Free in Linux

CWE-416Use After Free57 documents14 sources
Severity
7.8HIGHNVD
OSV5.5
EPSS
0.5%
top 33.99%
CISA KEV
KEV
Added 2024-08-07
Due 2024-08-28
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedJun 10
KEV addedAug 7
KEV dueAug 28
Latest updateApr 8
CISA Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Description

In the Linux kernel, the following vulnerability has been resolved: net: fix __dst_negative_advice() race __dst_negative_advice() does not enforce proper RCU rules when sk->dst_cache must be cleared, leading to possible UAF. RCU rules are that we must first clear sk->sk_dst_cache, then call dst_release(old_dst). Note that sk_dst_reset(sk) is implementing this protocol correctly, while __dst_negative_advice() uses the wrong order. Given that ip6_negative_advice() has special logic against RT

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages12 packages

Also affects: Debian Linux 10.0

Patches

🔴Vulnerability Details

25
OSV
linux-azure vulnerabilities2024-10-17
OSV
linux, linux-aws, linux-aws-hwe, linux-azure-4.15, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm, linux-oracle vulnerabilities2024-10-15
OSV
linux-azure-fde-5.15 vulnerabilities2024-09-25
OSV
linux-lowlatency, linux-lowlatency-hwe-5.15 vulnerabilities2024-09-23
OSV
linux-hwe-6.82024-09-23

📋Vendor Advisories

28
Palo Alto
PAN-SA-2026-0006 Informational Bulletin: Impact assessment of OSS CVEs in PAN-OS2026-04-08
Ubuntu
Linux kernel (Azure) vulnerabilities2024-10-17
Ubuntu
Linux kernel vulnerabilities2024-10-15
Ubuntu
Linux kernel vulnerabilities2024-09-25
Ubuntu
Linux kernel vulnerabilities2024-09-23

🕵️Threat Intelligence

2
Bleepingcomputer
CISA warns about actively exploited Apache OFBiz RCE flaw2024-08-08
Bleepingcomputer
Google fixes Android kernel zero-day exploited in targeted attacks2024-08-05

💬Community

1
Bugzilla
CVE-2024-36971 kernel: net: kernel: UAF in network route management2024-06-14
CVE-2024-36971 — Use After Free in Linux | cvebase