cbcvebase.
CVE-2024-42281
published 2024-08-17

CVE-2024-42281: In the Linux kernel, the following vulnerability has been resolved: bpf: Fix a segment issue when downgrading gso_size Linearize the skb when downgrading…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.8th percentile
In the Linux kernel, the following vulnerability has been resolved: bpf: Fix a segment issue when downgrading gso_size Linearize the skb when downgrading gso_size because it may trigger a BUG_ON() later when the skb is segmented as described in [1,2].

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < a689f5eb13a90f892a088865478b3cd39f53d5dca689f5eb13a90f892a088865478b3cd39f53d5dc
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < dda518dea60d556a2d171c0122ca7d9fdb7d473adda518dea60d556a2d171c0122ca7d9fdb7d473a
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < f6bb8c90cab97a3e03f8d30e3069efe6a742e0bef6bb8c90cab97a3e03f8d30e3069efe6a742e0be
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < 11ec79f5c7f74261874744039bc1551023edd6b211ec79f5c7f74261874744039bc1551023edd6b2
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < c3496314c53e7e82ddb544c825defc3e8c0e45cfc3496314c53e7e82ddb544c825defc3e8c0e45cf
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < ec4eea14d75f7b0491194dd413f540dd19b8c733ec4eea14d75f7b0491194dd413f540dd19b8c733
linuxlinux>= 2be7e212d5419a400d051c84ca9fdd083e5aacac < fa5ef655615a01533035c6139248c5b33aa27028fa5ef655615a01533035c6139248c5b33aa27028
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.10.3-16.10.3-1
linuxlinux_kernel>= 0 < 6.10.3-16.10.3-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 4.13 < 5.4.2825.4.282
linuxlinux_kernel>= 5.11 < 5.15.1655.15.165
linuxlinux_kernel>= 5.16 < 6.1.1036.1.103
linuxlinux_kernel>= 5.5 < 5.10.2245.10.224
linuxlinux_kernel>= 6.2 < 6.6.446.6.44
linuxlinux_kernel>= 6.7 < 6.10.36.10.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.