PT-2024-3399 · Linux+10 · Linux Kernel+10

Fedor Pchelkin

·

Published

2024-03-06

·

Updated

2026-02-21

·

CVE-2024-26961

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.8
Description: The vulnerability is related to the function mac802154 llsec key del() in the Linux kernel, which can free resources of a key directly without following the RCU rules for waiting before the end of a grace period. This may lead to use-after-free in case llsec lookup key() is traversing the list of keys in parallel with a key deletion. The issue is caused by the function not properly releasing resources, resulting in a potential use-after-free scenario. The ieee802154 llsec key entry structures are not freed by mac802154 llsec key del(), leading to an unreferenced object. The vulnerability was found by the Linux Verification Center.
Recommendations: To resolve the issue, update the Linux kernel to version 6.8 or later, which includes the fix for the mac802154 llsec key del() function. As a temporary workaround, consider disabling the mac802154 llsec key del() function until a patch is available. Restrict access to the vulnerable module mac802154 to minimize the risk of exploitation. Avoid using the llsec lookup key() function in parallel with key deletion until the issue is resolved.

Exploit

Fix

Use After Free

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:5101
ALSA-2024:5102
ALSA-2024:8617
ALSA-2025_16880
ALT-PU-2024-7511
AZL-40481
BDU:2024-03671
CESA-2024_5101
CESA-2024_5102
CVE-2024-26961
DLA-3842-1
DSA-5681-1
INFSA-2024_5101
INFSA-2024_5102
INFSA-2024_8617
OESA-2024-1677
OESA-2024-1678
OESA-2024-1679
OESA-2024-1680
OESA-2024-1681
OESA-2024-1682
OPENSUSE-SU-2024_2947-1
RHSA-2024:10262
RHSA-2024:5065
RHSA-2024:5101
RHSA-2024:5102
RHSA-2024:8613
RHSA-2024:8614
RHSA-2024:8617
RHSA-2024_5101
RHSA-2024_5102
RHSA-2024_8617
RLSA-2024:5101
RLSA-2024:5102
RLSA-2024:8617
RXSA-2024:5101
SUSE-SU-2024:2135-1
SUSE-SU-2024:2203-1
SUSE-SU-2024:2894-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2947-1
SUSE-SU-2024:2973-1
SUSE-SU-2025:20008-1
SUSE-SU-2025:20028-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20249-1
USN-6816-1
USN-6817-1
USN-6817-2
USN-6817-3
USN-6878-1
USN-6898-1
USN-6898-2
USN-6898-3
USN-6898-4
USN-6917-1
USN-6919-1
USN-6927-1
USN-7019-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu