cbcvebase.
CVE-2024-49568
published 2025-01-11

CVE-2024-49568: In the Linux kernel, the following vulnerability has been resolved: net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg When receiving…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.7th percentile
In the Linux kernel, the following vulnerability has been resolved: net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg When receiving proposal msg in server, the fields v2_ext_offset/ eid_cnt/ism_gid_cnt in proposal msg are from the remote client and can not be fully trusted. Especially the field v2_ext_offset, once exceed the max value, there has the chance to access wrong address, and crash may happen. This patch checks the fields v2_ext_offset/eid_cnt/ism_gid_cnt before using them.

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.12.8-1 (forky)linux 6.12.8-1 (forky)
linuxlinux
linuxlinux>= 8c3dca341aea885249e08856c4380300b75d2cf5 < 295a92e3df32e72aff0f4bc25c310e349d07ffbf295a92e3df32e72aff0f4bc25c310e349d07ffbf
linuxlinux>= 8c3dca341aea885249e08856c4380300b75d2cf5 < 42f6beb2d5779429417b5f8115a4e3fa695d2a6c42f6beb2d5779429417b5f8115a4e3fa695d2a6c
linuxlinux>= 8c3dca341aea885249e08856c4380300b75d2cf5 < 7863c9f3d24ba49dbead7e03dfbe40deb5888fdf7863c9f3d24ba49dbead7e03dfbe40deb5888fdf
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.12.8-16.12.8-1
linuxlinux_kernel>= 0 < 6.12.8-16.12.8-1
linuxlinux_kernel>= 0 < 6.8.0-60.636.8.0-60.63
linuxlinux_kernel>= 5.10 < 6.6.686.6.68
linuxlinux_kernel>= 6.7 < 6.12.76.12.7

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.