cbcvebase.
CVE-2024-44944
published 2024-08-30

CVE-2024-44944: In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: use helper function to calculate expect ID Delete expectation path is…

PriorityP422medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.1th percentile
In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: use helper function to calculate expect ID Delete expectation path is missing a call to the nf_expect_get_id() helper function to calculate the expectation ID, otherwise LSB of the expectation object address is leaked to userspace.

Affected

43 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 3.16.72 < 3.173.17
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < 64c0b8e64be8368617ef08dfc59a3160563a143564c0b8e64be8368617ef08dfc59a3160563a1435
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < eb4ca1a97e08ff5b920664ba292e576257e2d184eb4ca1a97e08ff5b920664ba292e576257e2d184
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < 5e2c24f7b0911b15c29aefce760bcf770542fb615e2c24f7b0911b15c29aefce760bcf770542fb61
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < 24f407042cf90b0872de667460230d8d50c06c3924f407042cf90b0872de667460230d8d50c06c39
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < 27662b46f2adaa52c1665a82af4b21c42c4337fd27662b46f2adaa52c1665a82af4b21c42c4337fd
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < 74de442b8e12a207c07953ee068009a7701aff8f74de442b8e12a207c07953ee068009a7701aff8f
linuxlinux>= 3c79107631db1f7fd32cf3f7368e4672004a3010 < 782161895eb4ac45cf7cfa8db375bd4766cb8299782161895eb4ac45cf7cfa8db375bd4766cb8299
linuxlinux>= 4.14.120 < 4.154.15
linuxlinux>= 4.19.44 < 4.19.3204.19.320
linuxlinux>= 4.4.191 < 4.54.5
linuxlinux>= 4.9.190 < 4.104.10
linuxlinux>= 5.0.17 < 5.15.1
linuxlinux>= 7b115755fb9d3aff0ddcd18a5c4d83381362acce < 66e7650dbbb8e236e781c670b167edc81e77145066e7650dbbb8e236e781c670b167edc81e771450
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.