Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-24855
HistoryFeb 05, 2024 - 12:00 a.m.

CVE-2024-24855

2024-02-0500:00:00
ubuntu.com
ubuntu.com
16
cve-2024-24855
linux kernel
scsi
null pointer
dereference
kernel panic
denial of service
bugzilla
redhat
suse

CVSS3

5

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:H

AI Score

4.7

Confidence

High

EPSS

0

Percentile

9.0%

A race condition was found in the Linux kernel’s scsi device driver in
lpfc_unregister_fcf_rescan() function. This can result in a null pointer
dereference issue, possibly leading to a kernel panic or denial of service
issue.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchlinux< 4.15.0-223.235UNKNOWN
ubuntu20.04noarchlinux< 5.4.0-174.193UNKNOWN
ubuntu22.04noarchlinux< 5.15.0-101.111UNKNOWN
ubuntu14.04noarchlinux< 3.13.0-197.248UNKNOWN
ubuntu16.04noarchlinux< 4.4.0-252.286UNKNOWN
ubuntu18.04noarchlinux-aws< 4.15.0-1166.179UNKNOWN
ubuntu20.04noarchlinux-aws< 5.4.0-1121.131UNKNOWN
ubuntu22.04noarchlinux-aws< 5.15.0-1056.61UNKNOWN
ubuntu14.04noarchlinux-aws< 4.4.0-1129.135UNKNOWN
ubuntu16.04noarchlinux-aws< 4.4.0-1167.182UNKNOWN
Rows per page:
1-10 of 641

CVSS3

5

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:N/I:L/A:H

AI Score

4.7

Confidence

High

EPSS

0

Percentile

9.0%