目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2024-57947— Linux kernel 安全漏洞

AI 预测 3.3 利用难度: 中等 EPSS 0.20% · P10

影响版本矩阵 14

厂商产品版本范围状态
LinuxLinux3c4287f62044a90e73a561aa05fc46e62da173da< 77bf0c4ab928ca4c9a99311f4f70ba0c17fecba9affected
3c4287f62044a90e73a561aa05fc46e62da173da< 957a4d1c4c5849e4515c9fb4db21bf85318103dcaffected
3c4287f62044a90e73a561aa05fc46e62da173da< 9625c46ce6fd4f922595a4b32b1de5066d70464faffected
3c4287f62044a90e73a561aa05fc46e62da173da< 69b6a67f7052905e928d75a0c5871de50e686986affected
3c4287f62044a90e73a561aa05fc46e62da173da< 8058c88ac0df21239daee54b5934d5c80ca9685faffected
3c4287f62044a90e73a561aa05fc46e62da173da< 791a615b7ad2258c560f91852be54b0480837c93affected
5.6affected
< 5.6unaffected
… +6 条更多
获取后续新漏洞提醒登录后订阅

一、 漏洞 CVE-2024-57947 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
netfilter: nf_set_pipapo: fix initial map fill
来源: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has to be inited to all-ones, but it must restrict it to the size of the first field, not the total field size. After each round in the map search step, the result and the fill map are swapped, so if we have a set where f->bsize of the first element is smaller than m->bsize_max, those one-bits are leaked into future rounds result map. This makes pipapo find an incorrect matching results for sets where first field size is not the largest. Followup patch adds a test case to nft_concat_range.sh selftest script. Thanks to Stefano Brivio for pointing out that we need to zero out the remainder explicitly, only correcting memset() argument isn't enough.
来源: CVE Program / CVE List V5
CVSS Information
N/A
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于netfilter的nf_set_pipapo功能中初始映射填充时处理不当,导致缓冲区初始化错误和后续匹配结果不正确。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商产品影响版本CPE订阅
LinuxLinux 3c4287f62044a90e73a561aa05fc46e62da173da ~ 77bf0c4ab928ca4c9a99311f4f70ba0c17fecba9 -
LinuxLinux 5.6 -

二、漏洞 CVE-2024-57947 的公开POC

#POC 描述源链接神龙链接
AI 生成 POC高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2024-57947 的情报信息

登录查看更多情报信息。

CVE-2024-57947 补丁与修复 (5)

IV. Related Vulnerabilities

V. Comments for CVE-2024-57947

暂无评论


发表评论