PT-2024-35507 · Linux+8 · Linux Kernel+8

Published

2024-10-22

·

Updated

2025-10-03

·

CVE-2024-53042

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.12.0-rc3-custom-gac8f72681cf2
Description The issue is related to a suspicious RCU usage warning in the ip tunnel init flow() function. There are code paths from which the function is called without holding the RCU read lock, resulting in a warning. The fix involves using l3mdev master upper ifindex by index() to acquire the RCU read lock before calling l3mdev master upper ifindex by index rcu().
Recommendations For Linux kernel versions prior to 6.12.0-rc3-custom-gac8f72681cf2, update to a newer version to resolve the issue. As a temporary workaround, consider restricting access to the ip tunnel init flow() function until a patch is available.

Exploit

Fix

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-16040
ALT-PU-2024-17099
ALT-PU-2024-17211
ALT-PU-2024-17891
ALT-PU-2025-12647
AZL-53900
BDU:2025-03352
CVE-2024-53042
DLA-4008-1
DLA-4075-1
DSA-5818-1
INFSA-2025_6966
OESA-2024-2522
OPENSUSE-SU-2024_4314-1
OPENSUSE-SU-2024_4316-1
OPENSUSE-SU-2025_01663-1
OPENSUSE-SU-2025_01675-1
OPENSUSE-SU-2025_01682-1
OPENSUSE-SU-2025_01683-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2024:4314-1
SUSE-SU-2024:4316-1
SUSE-SU-2024:4318-1
SUSE-SU-2024:4387-1
SUSE-SU-2025:01601-1
SUSE-SU-2025:01603-1
SUSE-SU-2025:01652-1
SUSE-SU-2025:01663-1
SUSE-SU-2025:01675-1
SUSE-SU-2025:01682-1
SUSE-SU-2025:01683-1
SUSE-SU-2025:20163-1
SUSE-SU-2025:20164-1
SUSE-SU-2025:20246-1
SUSE-SU-2025:20247-1
SUSE-SU-2025:20339-1
SUSE-SU-2025:20340-1
SUSE-SU-2025:20349-1
SUSE-SU-2025:20351-1
SUSE-SU-2025:20367-1
SUSE-SU-2025:20368-1
USN-7276-1
USN-7277-1
USN-7288-1
USN-7288-2
USN-7289-1
USN-7289-2
USN-7289-3
USN-7289-4
USN-7291-1
USN-7305-1
USN-7308-1
USN-7310-1
USN-7331-1
USN-7388-1
USN-7389-1
USN-7390-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7458-1
USN-7468-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu