Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-23849
HistoryJan 23, 2024 - 12:00 a.m.

CVE-2024-23849

2024-01-2300:00:00
ubuntu.com
ubuntu.com
18
linux kernel
off-by-one error
rds_recv_track_latency
out-of-bounds access

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

5.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel through
6.7.1, there is an off-by-one error for an RDS_MSG_RX_DGRAM_TRACE_MAX
comparison, resulting in out-of-bounds access.

Bugs

Notes

Author Note
Priority reason: Limited OOB read, as it is an off-by-one error on an u64 array (i_rx_lat_trace).
rodrigo-zaiden USN-6765-1 for linux-oem-6.5 wrongly stated that this CVE was fixed in version 6.5.0-1022.23. The mentioned notice was revoked and the state of the fix for linux-oem-6.5 was recovered to the previous state.
Rows per page:
1-10 of 661

References

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

5.5 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%