CVE-2024-27394

In the Linux kernel, the following vulnerability has been resolved: tcp: Fix Use-After-Free in tcp_ao_connect_init Since call_rcu, which is called in the hlist_for_each_entry_rcu traversal of tcp_ao_connect_init, is not part of the RCU read critical section, it is possible that the RCU grace period will pass during the traversal and the key will be free. To prevent this, it should be changed to hlist_for_each_entry_safe.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc5:*:*:*:*:*:*

History

08 Apr 2025, 19:41

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/80e679b352c3ce5158f3f778cfb77eb767e586fb - () https://git.kernel.org/stable/c/80e679b352c3ce5158f3f778cfb77eb767e586fb - Patch
References () https://git.kernel.org/stable/c/ca4fb6c6764b3f75b4f5aa81db1536291897ff7f - () https://git.kernel.org/stable/c/ca4fb6c6764b3f75b4f5aa81db1536291897ff7f - Patch
CPE cpe:2.3:o:linux:linux_kernel:6.9:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc2:*:*:*:*:*:*
First Time Linux linux Kernel
Linux

21 Nov 2024, 09:04

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/80e679b352c3ce5158f3f778cfb77eb767e586fb - () https://git.kernel.org/stable/c/80e679b352c3ce5158f3f778cfb77eb767e586fb -
References () https://git.kernel.org/stable/c/ca4fb6c6764b3f75b4f5aa81db1536291897ff7f - () https://git.kernel.org/stable/c/ca4fb6c6764b3f75b4f5aa81db1536291897ff7f -

06 Sep 2024, 14:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 8.1
v2 : unknown
v3 : 7.4

03 Jul 2024, 01:50

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1
CWE CWE-416
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: tcp: Fix Use-After-Free en tcp_ao_connect_init Dado que call_rcu, que se llama en el recorrido hlist_for_each_entry_rcu de tcp_ao_connect_init, no forma parte de la sección crítica de lectura de RCU, es posible que el El período de gracia de RCU transcurrirá durante el recorrido y la clave quedará gratuita. Para evitar esto, se debe cambiar a hlist_for_each_entry_safe.

14 May 2024, 15:12

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-14 15:12

Updated : 2025-04-08 19:41


NVD link : CVE-2024-27394

Mitre link : CVE-2024-27394

CVE.ORG link : CVE-2024-27394


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-416

Use After Free