PT-2024-34000 · Linux+6 · Linux Kernel+6
Wang Hai
·
Published
2024-11-07
·
Updated
2026-03-14
·
CVE-2024-50168
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel versions prior to 6.6.61
Description:
A memory leak issue was found in the Linux kernel's net/sun3 82586 module, specifically in the
sun3 82586 send packet() function. This function returns NETDEV TX OK without freeing the skb in case of skb->len being too long. To fix this, dev kfree skb() was added.Recommendations:
For versions prior to 6.6.61, update to version 6.6.61 or later to resolve the issue. As a temporary workaround, consider disabling the
sun3 82586 send packet() function until a patch is available.Exploit
Fix
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Ubuntu