cbcvebase.
CVE-2024-57948
published 2025-01-31

CVE-2024-57948: In the Linux kernel, the following vulnerability has been resolved: mac802154: check local interfaces before deleting sdata list syzkaller reported a corrupted…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
14.3th percentile
In the Linux kernel, the following vulnerability has been resolved: mac802154: check local interfaces before deleting sdata list syzkaller reported a corrupted list in ieee802154_if_remove. [1] Remove an IEEE 802.15.4 network interface after unregister an IEEE 802.15.4 hardware device from the system. CPU0 CPU1 ==== ==== genl_family_rcv_msg_doit ieee802154_unregister_hw ieee802154_del_iface ieee802154_remove_interfaces rdev_del_virtual_intf_deprecated list_del(&sdata->list) ieee802154_if_remove list_del_rcu The net device has been unregistered, since the rcu grace period, unregistration must be run before ieee802154_if_remove. To avoid this issue, add a check for local->interfaces before deleting sdata list. [1] kernel BUG at lib/list_debug.c:58! Oops: invalid opcode: 0000 [#1] PREEMPT SMP KASAN PTI CPU: 0 UID: 0 PID: 6277 Comm: syz-executor157 Not tainted 6.12.0-rc6-syzkaller-00005-g557329bcecc2 #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024 RIP: 0010:__list_del_entry_valid_or_report+0xf4/0x140 lib/list_debug.c:56 Code: e8 a1 7e 00 07 90 0f 0b 48 c7 c7 e0 37 60 8c 4c 89 fe e8 8f 7e 00 07 90 0f 0b 48 c7 c7 40 38 60 8c 4c 89 fe e8 7d 7e 00 07 90 0b 48 c7 c7 a0 38 60 8c 4c 89 fe e8 6b 7e 00 07 90 0f 0b 48 c7 RSP: 0018:ffffc9000490f3d0 EFLAGS: 00010246 RAX: 000000000000004e RBX: dead000000000122 RCX: d211eee56bb28d00 RDX: 0000000000000000 RSI: 0000000080000000 RDI: 0000000000000000 RBP: ffff88805b278dd8 R08: ffffffff8174a12c R09: 1ffffffff2852f0d R10: dffffc0000000000 R11: fffffbfff2852f0e R12: dffffc0000000000 R13: dffffc0000000000 R14: dead000000000100 R15: ffff88805b278cc0 FS: 0000555572f94380(0000) GS:ffff8880b8600000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 000056262e4a3000 CR3: 0000000078496000 CR4: 00000000003526f0 DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 Call Trace: __list_del_

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.128-1 (bookworm)linux 6.1.128-1 (bookworm)
debianlinux-6.1< linux 6.1.128-1 (bookworm)linux 6.1.128-1 (bookworm)
linuxlinux
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < 0d11dc30edfc4acef0acef130bb5ca596317190a0d11dc30edfc4acef0acef130bb5ca596317190a
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < 98ea165a2ac240345c48b57c0a3d08bbcad0292998ea165a2ac240345c48b57c0a3d08bbcad02929
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < 80aee0bc0dbe253b6692d33e64455dc742fc52f180aee0bc0dbe253b6692d33e64455dc742fc52f1
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < 41e4ca8acba39f1cecff2dfdf14ace4ee52c427241e4ca8acba39f1cecff2dfdf14ace4ee52c4272
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < 2e41e98c4e79edae338f2662dbdf74ac2245d1832e41e98c4e79edae338f2662dbdf74ac2245d183
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < b856d2c1384bc5a7456262afd21aa439ee5cdf6eb856d2c1384bc5a7456262afd21aa439ee5cdf6e
linuxlinux>= 62610ad21870a8cf842d4a48f07c3a964e1d2622 < eb09fbeb48709fe66c0d708aed81e910a577a30aeb09fbeb48709fe66c0d708aed81e910a577a30a
linuxlinux_kernel< 5.4.2905.4.290
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.128-16.1.128-1
linuxlinux_kernel>= 0 < 6.12.11-16.12.11-1
linuxlinux_kernel>= 0 < 6.12.11-16.12.11-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-62.656.8.0-62.65
linuxlinux_kernel>= 5.11 < 5.15.1775.15.177
linuxlinux_kernel>= 5.16 < 6.1.1276.1.127
linuxlinux_kernel>= 5.5 < 5.10.2345.10.234
linuxlinux_kernel>= 6.2 < 6.6.746.6.74
linuxlinux_kernel>= 6.7 < 6.12.116.12.11

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.