PT-2024-36944 · Linux+6 · Linux Kernel+6
Published
2024-12-03
·
Updated
2025-05-26
·
CVE-2024-56636
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.6.74
Description
The issue is related to the geneve module in the Linux kernel, where it was assumed that the mac header is set in the output path. This assumption is incorrect, and the issue has been resolved by using
skb eth hdr() instead of eth hdr(). The vulnerability was reported by sysbot, which detected warnings in the kernel logs. The warnings were related to the geneve xmit skb() function and the eth hdr() function.Recommendations
To resolve the issue, update the Linux kernel to version 6.6.74 or later. As a temporary workaround, consider disabling the
geneve xmit skb() function until a patch is available. Restrict access to the vulnerable module geneve to minimize the risk of exploitation. Avoid using the eth hdr() function in the affected API endpoints until the issue is resolved.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu