cbcvebase.
CVE-2024-49936
published 2024-10-21

CVE-2024-49936: In the Linux kernel, the following vulnerability has been resolved: net/xen-netback: prevent UAF in xenvif_flush_hash() During the list_for_each_entry_rcu…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.27%
19.5th percentile
In the Linux kernel, the following vulnerability has been resolved: net/xen-netback: prevent UAF in xenvif_flush_hash() During the list_for_each_entry_rcu iteration call of xenvif_flush_hash, kfree_rcu does not exist inside the rcu read critical section, so if kfree_rcu is called when the rcu grace period ends during the iteration, UAF occurs when accessing head->next after the entry becomes free. Therefore, to solve this, you need to change it to list_for_each_entry_safe.

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.115-1 (bookworm)linux 6.1.115-1 (bookworm)
debianlinux-6.1< linux 6.1.115-1 (bookworm)linux 6.1.115-1 (bookworm)
linuxlinux
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < 3c4423b0c4b98213b3438e15061e1d08220e69823c4423b0c4b98213b3438e15061e1d08220e6982
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < a7f0073fcd12ed7de185ef2c0af9d0fa1ddef22ca7f0073fcd12ed7de185ef2c0af9d0fa1ddef22c
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < a0465723b8581cad27164c9073fd780904cd22d4a0465723b8581cad27164c9073fd780904cd22d4
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < efcff6ce7467f01f0753609f420333f3f2cecedaefcff6ce7467f01f0753609f420333f3f2ceceda
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < 143edf098b80669d05245b2f2367dd156a83a2c5143edf098b80669d05245b2f2367dd156a83a2c5
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < d408889d4b54f5501e4becc4dbbb9065143fbf4ed408889d4b54f5501e4becc4dbbb9065143fbf4e
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < 54d8639af5568fc41c0e274fc3ec9cf86c59fcbb54d8639af5568fc41c0e274fc3ec9cf86c59fcbb
linuxlinux>= 40d8abdee806d496a60ee607a6d01b1cd7fabaf0 < 0fa5e94a1811d68fbffa0725efe6d4ca62c03d120fa5e94a1811d68fbffa0725efe6d4ca62c03d12
linuxlinux_kernel< 5.10.2275.10.227
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.115-16.1.115-1
linuxlinux_kernel>= 0 < 6.11.4-16.11.4-1
linuxlinux_kernel>= 0 < 6.11.4-16.11.4-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-127.1375.15.0-127.137
linuxlinux_kernel>= 0 < 6.8.0-54.566.8.0-54.56
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 5.11 < 5.15.1685.15.168
linuxlinux_kernel>= 5.16 < 6.1.1136.1.113
linuxlinux_kernel>= 6.11 < 6.11.36.11.3
linuxlinux_kernel>= 6.2 < 6.6.556.6.55
linuxlinux_kernel>= 6.7 < 6.10.146.10.14

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.