目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2024-58058— Linux kernel 安全漏洞

AI Predicted 3.7 Difficulty: Moderate EPSS 0.20% · P10

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 18

ベンダープロダクトVersion Rangeステータス
LinuxLinux1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< 428aff8f7cfb0d9a8854477648022cef96bcab28affected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< 6211c11fc20424bbc6d79c835c7c212b553ae898affected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< 1787cd67bb94b106555ffe64f887f6aa24b47010affected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< e01b55f261ccc96e347eba4931e4429d080d879daffected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< 40e25a3c0063935763717877bb2a814c081509ffaffected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< 77e5266e3d3faa6bdcf20d9c68a8972f6aa06522affected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< 2a987950df825d0144370e700dc5fb337684ffbaaffected
1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d< bdb0ca39e0acccf6771db49c3f94ed787d05f2d7affected
… +10 more rows
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2024-58058の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
ubifs: skip dumping tnc tree when zroot is null
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: ubifs: skip dumping tnc tree when zroot is null Clearing slab cache will free all znode in memory and make c->zroot.znode = NULL, then dumping tnc tree will access c->zroot.znode which cause null pointer dereference.
ソース: CVE Program / CVE List V5
CVSS情報
N/A
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于zroot为null时跳过转储tnc树,导致空指针取消引用。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux 1e51764a3c2ac05a23a22b2a95ddee4d9bffb16d ~ 428aff8f7cfb0d9a8854477648022cef96bcab28 -
LinuxLinux 2.6.27 -

II. CVE-2024-58058の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2024-58058のインテリジェンス情報

登录查看更多情报信息。

CVE-2024-58058 补丁与修复 (5)

CVE-2024-58058 其他参考 (3)

Same Patch Batch · Linux · 2025-03-06 · 46 CVEs total

CVE-2025-218299.8 CRITICALRDMA/rxe: Fix the warning "__rxe_cleanup+0x12c/0x170 [rdma_rxe]"
CVE-2025-218288.8 HIGHwifi: mac80211: don't flush non-uploaded STAs
CVE-2025-218327.8 HIGHblock: don't revert iter for -EIOCBQUEUED
CVE-2025-218257.8 HIGHbpf: Cancel the running bpf_timer through kworker for PREEMPT_RT
CVE-2025-218267.8 HIGHnetfilter: nf_tables: reject mismatching sum of field_len with set key length
CVE-2025-218277.8 HIGHBluetooth: btusb: mediatek: Add locks for usb_driver_claim_interface()
CVE-2025-218307.3 HIGHlandlock: Handle weird files
CVE-2024-58051ipmi: ipmb: Add check devm_kasprintf() returned value
CVE-2024-58063wifi: rtlwifi: fix memory leaks and invalid access at probe error path
CVE-2024-58052drm/amdgpu: Fix potential NULL pointer dereference in atomctrl_get_smc_sclk_range_table
CVE-2024-58056remoteproc: core: Fix ida_free call while not allocated
CVE-2024-58053rxrpc: Fix handling of received connection abort
CVE-2024-58055usb: gadget: f_tcm: Don't free command immediately
CVE-2024-58054staging: media: max96712: fix kernel oops when removing module
CVE-2024-58064wifi: cfg80211: tests: Fix potential NULL dereference in test_cfg80211_parse_colocated_ap(
CVE-2024-58065clk: mmp: pxa1908-apbc: Fix NULL vs IS_ERR() check
CVE-2024-58066clk: mmp: pxa1908-apbcp: Fix a NULL vs IS_ERR() check
CVE-2024-58067clk: mmp: pxa1908-mpmu: Fix a NULL vs IS_ERR() check
CVE-2024-58069rtc: pcf85063: fix potential OOB write in PCF85063 NVMEM read
CVE-2024-58068OPP: fix dev_pm_opp_find_bw_*() when bandwidth table not initialized

Showing 20 of 46 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2024-58058へのコメント

まだコメントはありません


コメントを残す