目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2024-49571— Linux kernel 安全漏洞

CVSS 9.1 · Critical EPSS 0.59% · P45

Affected Version Matrix 14

ベンダープロダクトVersion Rangeステータス
LinuxLinuxe7b7a64a8493d47433fd003efbe6543e3f676294< 846bada23bfcdeb83621b045ed85dc06c7833ff0affected
e7b7a64a8493d47433fd003efbe6543e3f676294< f10635268a0a49ee902a3b63b5dbb76f4fed498eaffected
e7b7a64a8493d47433fd003efbe6543e3f676294< 62056d1592e63d85e82357ee2ae6a6a294f440b0affected
e7b7a64a8493d47433fd003efbe6543e3f676294< 91a7c27c1444ed4677b83fd5308d2cf03f5f0851affected
e7b7a64a8493d47433fd003efbe6543e3f676294< 47ce46349672a7e0c361bfe39ed0b22e824ef4fbaffected
e7b7a64a8493d47433fd003efbe6543e3f676294< a29e220d3c8edbf0e1beb0f028878a4a85966556affected
4.16affected
< 4.16unaffected
… +6 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2024-49571の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
net/smc: check iparea_offset and ipv6_prefixes_cnt when receiving proposal msg
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: net/smc: check iparea_offset and ipv6_prefixes_cnt when receiving proposal msg When receiving proposal msg in server, the field iparea_offset and the field ipv6_prefixes_cnt in proposal msg are from the remote client and can not be fully trusted. Especially the field iparea_offset, once exceed the max value, there has the chance to access wrong address, and crash may happen. This patch checks iparea_offset and ipv6_prefixes_cnt before using them.
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于net/smc模块在接收提议消息时,未正确检查iparea_offset和ipv6_prefixes_cnt字段,可能导致访问错误地址。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux e7b7a64a8493d47433fd003efbe6543e3f676294 ~ 846bada23bfcdeb83621b045ed85dc06c7833ff0 -
LinuxLinux 4.16 -

II. CVE-2024-49571の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2024-49571のインテリジェンス情報

登录查看更多情报信息。

CVE-2024-49571 补丁与修复 (6)

Same Patch Batch · Linux · 2025-01-11 · 67 CVEs total

CVE-2024-578439.8 CRITICALvirtio-net: fix overflow inside virtnet_rq_alloc
CVE-2024-474089.8 CRITICALnet/smc: check smcd_v2_ext_offset when receiving proposal msg
CVE-2024-495689.8 CRITICALnet/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg
CVE-2024-577939.3 CRITICALvirt: tdx-guest: Just leak decrypted memory on unrecoverable errors
CVE-2024-556398.4 HIGHnet: renesas: rswitch: avoid use-after-put for a device tree node
CVE-2024-523197.8 HIGHmm: use aligned address in clear_gigantic_page()
CVE-2024-517297.8 HIGHmm: use aligned address in copy_user_gigantic_page()
CVE-2024-578497.8 HIGHs390/cpum_sf: Handle CPU hotplug remove during sampling
CVE-2024-578507.8 HIGHjffs2: Prevent rtime decompress memory corruption
CVE-2024-578757.8 HIGHblock: RCU protect disk->conv_zones_bitmap
CVE-2024-477947.8 HIGHbpf: Prevent tailcall infinite loop caused by freplace
CVE-2024-411497.8 HIGHblock: avoid to reuse `hctx` not removed from cpuhp callback list
CVE-2024-495697.5 HIGHnvme-rdma: unquiesce admin_q before destroy it
CVE-2024-577917.5 HIGHnet/smc: check return value of sock_recvmsg when draining clc data
CVE-2024-567887.5 HIGHnet: ethernet: oa_tc6: fix tx skb race condition between reference pointers
CVE-2024-578047.3 HIGHscsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs
CVE-2024-577927.3 HIGHpower: supply: gpio-charger: Fix set charge current limits
CVE-2024-563687.1 HIGHring-buffer: Fix overflow in __rb_map_vma
CVE-2024-495737.0 HIGHsched/fair: Fix NEXT_BUDDY
CVE-2024-57806btrfs: fix transaction atomicity bug when enabling simple quotas

Showing 20 of 67 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2024-49571へのコメント

まだコメントはありません


コメントを残す