cbcvebase.
CVE-2024-44998
published 2024-09-04

CVE-2024-44998: In the Linux kernel, the following vulnerability has been resolved: atm: idt77252: prevent use after free in dequeue_rx() We can't dereference "skb" after…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
16.7th percentile
In the Linux kernel, the following vulnerability has been resolved: atm: idt77252: prevent use after free in dequeue_rx() We can't dereference "skb" after calling vcc->push() because the skb is released.

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
debianlinux-6.1< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 628ea82190a678a56d2ec38cda3addf3b3a6248d628ea82190a678a56d2ec38cda3addf3b3a6248d
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 09e086a5f72ea27c758b3f3b419a69000c32adc109e086a5f72ea27c758b3f3b419a69000c32adc1
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1cece837e387c039225f19028df255df87a97c0d1cece837e387c039225f19028df255df87a97c0d
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 24cf390a5426aac9255205e9533cdd7b4235d51824cf390a5426aac9255205e9533cdd7b4235d518
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 379a6a326514a3e2f71b674091dfb0e0e7522b55379a6a326514a3e2f71b674091dfb0e0e7522b55
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < ef23c18ab88e33ce000d06a5c6aad0620f219bfdef23c18ab88e33ce000d06a5c6aad0620f219bfd
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 91b4850e7165a4b7180ef1e227733bcb41ccdf1091b4850e7165a4b7180ef1e227733bcb41ccdf10
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < a9a18e8f770c9b0703dab93580d0b02e199a4c79a9a18e8f770c9b0703dab93580d0b02e199a4c79
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1
linuxlinux_kernel>= 0 < 6.1.112-16.1.112-1
linuxlinux_kernel>= 0 < 6.10.7-16.10.7-1
linuxlinux_kernel>= 0 < 6.10.7-16.10.7-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 0 < 4.4.0-261.2954.4.0-261.295
linuxlinux_kernel>= 0 < 4.15.0-231.2434.15.0-231.243
linuxlinux_kernel>= 2.6.12 < 4.19.3214.19.321
linuxlinux_kernel>= 4.20 < 5.4.2835.4.283
linuxlinux_kernel>= 5.11 < 5.15.1665.15.166
linuxlinux_kernel>= 5.16 < 6.1.1076.1.107

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.