Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-36978
HistoryJun 19, 2024 - 12:00 a.m.

CVE-2024-36978

2024-06-1900:00:00
ubuntu.com
ubuntu.com
17
linux kernel
oob write
net: sched
sch_multiq

AI Score

6.9

Confidence

High

EPSS

0

Percentile

5.0%

In the Linux kernel, the following vulnerability has been resolved: net:
sched: sch_multiq: fix possible OOB write in multiq_tune() q->bands will be
assigned to qopt->bands to execute subsequent code logic after kmalloc. So
the old q->bands should not be used in kmalloc. Otherwise, an out-of-bounds
write will occur.

AI Score

6.9

Confidence

High

EPSS

0

Percentile

5.0%