cbcvebase.
CVE-2024-53240
published 2024-12-24

CVE-2024-53240: In the Linux kernel, the following vulnerability has been resolved: xen/netfront: fix crash when removing device When removing a netfront device directly after…

PriorityP422medium5.7CVSS 3.1
AVAACLPRLUINSUCNINAH
EPSS
0.62%
46.5th percentile
In the Linux kernel, the following vulnerability has been resolved: xen/netfront: fix crash when removing device When removing a netfront device directly after a suspend/resume cycle it might happen that the queues have not been setup again, causing a crash during the attempt to stop the queues another time. Fix that by checking the queues are existing before trying to stop them. This is XSA-465 / CVE-2024-53240.

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 4.19.269 < 4.204.20
linuxlinux>= 5.10.159 < 5.10.2325.10.232
linuxlinux>= 5.15.83 < 5.15.1755.15.175
linuxlinux>= 5.4.227 < 5.4.2885.4.288
linuxlinux>= 6.0.13 < 6.16.1
linuxlinux>= d50b7914fae04d840ce36491d22133070b18cca9 < 8b41e6bccf7de93982781be4125211443382e66d8b41e6bccf7de93982781be4125211443382e66d
linuxlinux>= d50b7914fae04d840ce36491d22133070b18cca9 < fe9a8f5250aed0948b668c8a4e051e3b0fc29f09fe9a8f5250aed0948b668c8a4e051e3b0fc29f09
linuxlinux>= d50b7914fae04d840ce36491d22133070b18cca9 < 7728e974ffbf14f17648dd92ea640b42b654d47c7728e974ffbf14f17648dd92ea640b42b654d47c
linuxlinux>= d50b7914fae04d840ce36491d22133070b18cca9 < f9244fb55f37356f75c739c57323d9422d7aa0f8f9244fb55f37356f75c739c57323d9422d7aa0f8
linuxlinux>= e6860c889f4ad50b6ab696f5ea154295d72cf27a < 1d5354a9182b6d302ae10367cbec1ca339d4e4e71d5354a9182b6d302ae10367cbec1ca339d4e4e7
linuxlinux>= e6e897d4fe2f89c0bd94600a40bedf5e6e75e050 < 2657ba851fa3381256d81e431b20041dc232fd882657ba851fa3381256d81e431b20041dc232fd88
linuxlinux>= ed773dd798bf720756d20021b8d8a4a3d7184bda < 20f7f0cf7af5d81b218202ef504223af84b16a8f20f7f0cf7af5d81b218202ef504223af84b16a8f
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 6.12.6-16.12.6-1
linuxlinux_kernel>= 0 < 6.12.6-16.12.6-1
linuxlinux_kernel>= 4.19.269 < 4.204.20
linuxlinux_kernel>= 5.10.159 < 5.10.2325.10.232

CVSS provenance

nvdv3.15.7MEDIUMCVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.7MEDIUM
vendor_debian5.7MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.