CVE-2024-27390

In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: remove one synchronize_net() barrier in ipv6_mc_down() As discussed in the past (commit 2d3916f31891 ("ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()")) I think the synchronize_net() call in ipv6_mc_down() is not needed. Under load, synchronize_net() can last between 200 usec and 5 ms. KASAN seems to agree as well.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

18 Sep 2025, 16:06

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
First Time Linux linux Kernel
Linux
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/17ef8efc00b34918b966388b2af0993811895a8c - () https://git.kernel.org/stable/c/17ef8efc00b34918b966388b2af0993811895a8c - Patch
References () https://git.kernel.org/stable/c/26d4bac55750d535f1f0b8790dc26daf6089e373 - () https://git.kernel.org/stable/c/26d4bac55750d535f1f0b8790dc26daf6089e373 - Patch
References () https://git.kernel.org/stable/c/5da9a218340a2bc804dc4327e5804392e24a0b88 - () https://git.kernel.org/stable/c/5da9a218340a2bc804dc4327e5804392e24a0b88 - Patch
References () https://git.kernel.org/stable/c/7eb06ee5921189812e6b4bfe7b0f1e878be16df7 - () https://git.kernel.org/stable/c/7eb06ee5921189812e6b4bfe7b0f1e878be16df7 - Patch
References () https://git.kernel.org/stable/c/9d159d6637ccce25f879d662a480541ef4ba3a50 - () https://git.kernel.org/stable/c/9d159d6637ccce25f879d662a480541ef4ba3a50 - Patch
References () https://git.kernel.org/stable/c/a03ede2282ebbd181bd6f5c38cbfcb5765afcd04 - () https://git.kernel.org/stable/c/a03ede2282ebbd181bd6f5c38cbfcb5765afcd04 - Patch

21 Nov 2024, 09:04

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/17ef8efc00b34918b966388b2af0993811895a8c - () https://git.kernel.org/stable/c/17ef8efc00b34918b966388b2af0993811895a8c -
References () https://git.kernel.org/stable/c/26d4bac55750d535f1f0b8790dc26daf6089e373 - () https://git.kernel.org/stable/c/26d4bac55750d535f1f0b8790dc26daf6089e373 -
References () https://git.kernel.org/stable/c/5da9a218340a2bc804dc4327e5804392e24a0b88 - () https://git.kernel.org/stable/c/5da9a218340a2bc804dc4327e5804392e24a0b88 -
References () https://git.kernel.org/stable/c/7eb06ee5921189812e6b4bfe7b0f1e878be16df7 - () https://git.kernel.org/stable/c/7eb06ee5921189812e6b4bfe7b0f1e878be16df7 -
References () https://git.kernel.org/stable/c/9d159d6637ccce25f879d662a480541ef4ba3a50 - () https://git.kernel.org/stable/c/9d159d6637ccce25f879d662a480541ef4ba3a50 -
References () https://git.kernel.org/stable/c/a03ede2282ebbd181bd6f5c38cbfcb5765afcd04 - () https://git.kernel.org/stable/c/a03ede2282ebbd181bd6f5c38cbfcb5765afcd04 -
Summary
  • (es) En el kernel de Linux, se resolvió la siguiente vulnerabilidad: ipv6: mcast: elimina una barrera de sincronización_net() en ipv6_mc_down() Como se discutió en el pasado (commit 2d3916f31891 ("ipv6: corrige caídas de skb en igmp6_event_query() e igmp6_event_report()" )) Creo que la llamada sincronizar_net() en ipv6_mc_down() no es necesaria. Bajo carga, sincronizar_net() puede durar entre 200 usos y 5 ms. KASAN parece estar de acuerdo también.

01 May 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-01 13:15

Updated : 2025-09-18 16:06


NVD link : CVE-2024-27390

Mitre link : CVE-2024-27390

CVE.ORG link : CVE-2024-27390


JSON object : View

Products Affected

linux

  • linux_kernel