PT-2024-34085 · Linux+8 · Linux Kernel+8

Maksym Yaremchuk

·

Published

2024-10-25

·

Updated

2025-10-03

·

CVE-2024-50252

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.6.61
Description: A memory leak issue has been identified in the Linux kernel, specifically in the mlxsw spectrum ipip module. This issue occurs when changing the remote IPv6 address of an ip6gre net device, resulting in a warning and a memory leak. The problem arises because the new remote address is not added to the driver's hash table, and the old address is not removed. This issue can be triggered by changing the remote address of an ip6gre net device using the ip link set command.
Recommendations: To resolve this issue, update the Linux kernel to version 6.6.61 or later. As a temporary workaround, consider avoiding changes to the remote IPv6 address of ip6gre net devices until the update is applied. Additionally, restrict access to the vulnerable module mlxsw to minimize the risk of exploitation.

Exploit

Fix

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:0059
ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-16040
ALT-PU-2024-17211
ALT-PU-2024-17891
ALT-PU-2025-12647
AZL-53340
BDU:2025-04150
CVE-2024-50252
DLA-4008-1
DSA-5818-1
INFSA-2025_0059
MGASA-2024-0368
MGASA-2024-0369
OESA-2025-1097
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2024_4314-1
OPENSUSE-SU-2024_4316-1
OPENSUSE-SU-2025:14705-1
RHSA-2025:0059
RHSA-2025_0059
SUSE-SU-2024:4314-1
SUSE-SU-2024:4316-1
SUSE-SU-2024:4318-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:20163-1
SUSE-SU-2025:20164-1
SUSE-SU-2025:20246-1
SUSE-SU-2025:20247-1
USN-7276-1
USN-7277-1
USN-7310-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7468-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu