Lucene search

K
vulnrichmentLinuxVULNRICHMENT:CVE-2024-35889
HistoryMay 19, 2024 - 8:34 a.m.

CVE-2024-35889 idpf: fix kernel panic on unknown packet types

2024-05-1908:34:45
Linux
github.com
1
linux kernel
vulnerability resolved
idpf
driver
eth_type_trans
network layer handler
tcpdump
kernel panic
cve-2024-35889

AI Score

6.6

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

In the Linux kernel, the following vulnerability has been resolved:

idpf: fix kernel panic on unknown packet types

In the very rare case where a packet type is unknown to the driver,
idpf_rx_process_skb_fields would return early without calling
eth_type_trans to set the skb protocol / the network layer handler.
This is especially problematic if tcpdump is running when such a
packet is received, i.e. it would cause a kernel panic.

Instead, call eth_type_trans for every single packet, even when
the packet type is unknown.

AI Score

6.6

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial