cbcvebase.
CVE-2024-57931
published 2025-01-21

CVE-2024-57931: In the Linux kernel, the following vulnerability has been resolved: selinux: ignore unknown extended permissions When evaluating extended permissions, ignore…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.6th percentile
In the Linux kernel, the following vulnerability has been resolved: selinux: ignore unknown extended permissions When evaluating extended permissions, ignore unknown permissions instead of calling BUG(). This commit ensures that future permissions can be added without interfering with older kernels.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.124-1 (bookworm)linux 6.1.124-1 (bookworm)
debianlinux-6.1< linux 6.1.124-1 (bookworm)linux 6.1.124-1 (bookworm)
linuxlinux
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < f45a77dd24ae9ddb474303ec3975c376bd99fc51f45a77dd24ae9ddb474303ec3975c376bd99fc51
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < 712137b177b45f255ce5687e679d950fcb218256712137b177b45f255ce5687e679d950fcb218256
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < f70e4b9ec69d9a74b84c17767a9a4eda8c901021f70e4b9ec69d9a74b84c17767a9a4eda8c901021
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < c79324d42fa48372e0acb306a2761cc642bd4db0c79324d42fa48372e0acb306a2761cc642bd4db0
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < c1dbd28a079553de0023e1c938c713efeeee400fc1dbd28a079553de0023e1c938c713efeeee400f
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < efefe36c03a73bb81c0720ce397659a5051b73faefefe36c03a73bb81c0720ce397659a5051b73fa
linuxlinux>= fa1aa143ac4a682c7f5fd52a3cf05f5a6fe44a0a < 900f83cf376bdaf798b6f5dcb2eae0c822e908b6900f83cf376bdaf798b6f5dcb2eae0c822e908b6
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.124-16.1.124-1
linuxlinux_kernel>= 0 < 6.12.9-16.12.9-1
linuxlinux_kernel>= 0 < 6.12.9-16.12.9-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-60.636.8.0-60.63
linuxlinux_kernel>= 4.3 < 5.4.2895.4.289
linuxlinux_kernel>= 5.11 < 5.15.1765.15.176
linuxlinux_kernel>= 5.16 < 6.1.1246.1.124
linuxlinux_kernel>= 5.5 < 5.10.2335.10.233
linuxlinux_kernel>= 6.2 < 6.6.706.6.70
linuxlinux_kernel>= 6.7 < 6.12.96.12.9

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.