CVE-2024-56783

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level cgroup maximum depth is INT_MAX by default, there is a cgroup toggle to restrict this maximum depth to a more reasonable value not to harm performance. Remove unnecessary WARN_ON_ONCE which is reachable from userspace.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc1:*:*:*:*:*:*

History

09 Jan 2025, 21:24

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: netfilter: nft_socket: eliminar WARN_ON_ONCE en el nivel máximo de cgroup La profundidad máxima de cgroup es INT_MAX de manera predeterminada; hay un conmutador de cgroup para restringir esta profundidad máxima a un valor más razonable para no perjudicar el rendimiento. Elimine WARN_ON_ONCE innecesario al que se puede acceder desde el espacio de usuario.
References () https://git.kernel.org/stable/c/2f9bec0a749eb646b384fde0c7b7c24687b2ffae - () https://git.kernel.org/stable/c/2f9bec0a749eb646b384fde0c7b7c24687b2ffae - Patch
References () https://git.kernel.org/stable/c/7064a6daa4a700a298fe3aee11dea296bfe59fc4 - () https://git.kernel.org/stable/c/7064a6daa4a700a298fe3aee11dea296bfe59fc4 - Patch
References () https://git.kernel.org/stable/c/b7529880cb961d515642ce63f9d7570869bbbdc3 - () https://git.kernel.org/stable/c/b7529880cb961d515642ce63f9d7570869bbbdc3 - Patch
References () https://git.kernel.org/stable/c/e227c042580ab065edc610c9ddc9bea691e6fc4d - () https://git.kernel.org/stable/c/e227c042580ab065edc610c9ddc9bea691e6fc4d - Patch
CWE CWE-617
First Time Linux linux Kernel
Linux
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.13:rc1:*:*:*:*:*:*

08 Jan 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-08 18:15

Updated : 2025-01-09 21:24


NVD link : CVE-2024-56783

Mitre link : CVE-2024-56783

CVE.ORG link : CVE-2024-56783


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-617

Reachable Assertion