7.8
CVE-2024-26856
- EPSS 0.23%
- Veröffentlicht 17.04.2024 11:15:08
- Zuletzt bearbeitet 03.03.2025 17:47:59
- CVE-Watchlists
- Unerledigt
net: sparx5: Fix use after free inside sparx5_del_mact_entry
In the Linux kernel, the following vulnerability has been resolved: net: sparx5: Fix use after free inside sparx5_del_mact_entry Based on the static analyzis of the code it looks like when an entry from the MAC table was removed, the entry was still used after being freed. More precise the vid of the mac_entry was used after calling devm_kfree on the mac_entry. The fix consists in first using the vid of the mac_entry to delete the entry from the HW and after that to free it.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version >= 5.14 < 5.15.152
Linux ≫ Linux Kernel Version >= 5.16 < 6.1.82
Linux ≫ Linux Kernel Version >= 6.2 < 6.6.22
Linux ≫ Linux Kernel Version >= 6.7 < 6.7.10
Linux ≫ Linux Kernel Version6.8 Updaterc1
Linux ≫ Linux Kernel Version6.8 Updaterc2
Linux ≫ Linux Kernel Version6.8 Updaterc3
Linux ≫ Linux Kernel Version6.8 Updaterc4
Linux ≫ Linux Kernel Version6.8 Updaterc5
Linux ≫ Linux Kernel Version6.8 Updaterc6
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.132 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-416 Use After Free
The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.
https://git.kernel.org/stable/c/0de693d68b0a18d5e256556c7c62d92cca35ad52
https://git.kernel.org/stable/c/71809805b95052ff551922f11660008fb3666025
https://git.kernel.org/stable/c/89d72d4125e94aa3c2140fedd97ce07ba9e37674
https://git.kernel.org/stable/c/e46274df1100fb0c06704195bfff5bfbd418bf64
https://git.kernel.org/stable/c/e83bebb718fd1f42549358730e1206164e0861d6