Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2024-41081— ila: block BH in ila_output()

AI Predicted 5.5 Difficulty: Moderate EPSS 0.27% · P19

Possible ATT&CK Techniques 1AI

T1203 · Exploitation for Client Execution

Affected Version Matrix 18

VendorProductVersion RangeStatus
LinuxLinux79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< 7435bd2f84a25aba607030237261b3795ba782daaffected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< 96103371091c6476eb07f4c66624bdd1b42f758aaffected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< a0cafb7b0b94d18e4813ee4b712a056f280e7b5aaffected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< feac2391e26b086f73be30e9b1ab215eada8d830affected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< b4eb25a3d70df925a9fa4e82d17a958a0a228f5faffected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< 522c3336c2025818fa05e9daf0ac35711e55e316affected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< 9f9c79d8e527d867e0875868b14fb76e6011e70caffected
79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5< cf28ff8e4c02e1ffa850755288ac954b6ff0db8caffected
… +10 more rows
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2024-41081

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
ila: block BH in ila_output()
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: ila: block BH in ila_output() As explained in commit 1378817486d6 ("tipc: block BH before using dst_cache"), net/core/dst_cache.c helpers need to be called with BH disabled. ila_output() is called from lwtunnel_output() possibly from process context, and under rcu_read_lock(). We might be interrupted by a softirq, re-enter ila_output() and corrupt dst_cache data structures. Fix the race by using local_bh_disable().
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于在ila_output函数中,需要在调用net/core/dst_cache.c帮助函数之前禁用BH。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
LinuxLinux 79ff2fc31e0f6a52eeb67fb89fba87e822b9b7b5 ~ 7435bd2f84a25aba607030237261b3795ba782da -
LinuxLinux 4.10 -

II. Public POCs for CVE-2024-41081

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-41081

登录查看更多情报信息。

Other References for CVE-2024-41081 (8)

Same Patch Batch · Linux · 2024-07-29 · 121 CVEs total

CVE-2024-41089drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_hd_modes
CVE-2024-42068bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro()
CVE-2024-42067bpf: Take return from set_memory_rox() into account with bpf_jit_binary_lock_ro()
CVE-2024-42066drm/xe: Fix potential integer overflow in page size calculation
CVE-2024-42065drm/xe: Add a NULL check in xe_ttm_stolen_mgr_init
CVE-2024-42063bpf: Mark bpf prog stack with kmsan_unposion_memory in interpreter mode
CVE-2024-42064drm/amd/display: Skip pipe if the pipe idx not set properly
CVE-2023-52887net: can: j1939: enhanced error handling for tightly received RTS messages in xtp_rx_rts_s
CVE-2024-41098ata: libata-core: Fix null pointer dereference on error
CVE-2024-41097usb: atm: cxacru: fix endpoint checking in cxacru_bind()
CVE-2024-41096PCI/MSI: Fix UAF in msi_capability_init
CVE-2024-41095drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_ld_modes
CVE-2024-41094drm/fbdev-dma: Only set smem_start is enable per module option
CVE-2024-41093drm/amdgpu: avoid using null object of framebuffer
CVE-2024-41092drm/i915/gt: Fix potential UAF by revoke of fence registers
CVE-2024-41077null_blk: fix validation of block size
CVE-2024-41080io_uring: fix possible deadlock in io_register_iowq_max_workers()
CVE-2024-41079nvmet: always initialize cqe.result
CVE-2024-41078btrfs: qgroup: fix quota root leak after quota disable failure
CVE-2024-41075cachefiles: add consistency check for copen/cread

Showing top 20 of 121 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2024-41081

No comments yet


Leave a comment