PT-2024-37011 · Linux+7 · Linux Kernel+7

Qiu-Ji Chen

·

Published

2024-12-28

·

Updated

2025-10-03

·

CVE-2024-56700

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to an atomicity violation in the fmc send cmd() function. This occurs when the function is executed simultaneously with the modification of the fmdev->resp skb value. If the fmdev->resp skb variable is assigned a null value after passing the validity check, it may result in a null pointer dereference error. The error can occur at the line where evt hdr = (void *)skb->data; is executed, because skb = fmdev->resp skb; may be invalid. To address this issue, it is recommended to include the validity check of fmdev->resp skb within the locked section of the function to maintain its validity.
Recommendations To resolve the issue, include the validity check of fmdev->resp skb within the locked section of the fmc send cmd() function. This modification ensures that the value of fmdev->resp skb does not change during the validation process, thereby maintaining its validity. As a temporary workaround, consider adding locks to prevent concurrent execution of the fmc send cmd() function with the modification of the fmdev->resp skb value.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-12647
BDU:2025-05005
CVE-2024-56700
DLA-4075-1
DLA-4076-1
OESA-2025-1032
OESA-2025-1033
OESA-2025-1034
OESA-2025-1035
OESA-2025-1036
OESA-2025-1037
OPENSUSE-SU-2025_0428-1
OPENSUSE-SU-2025_0499-1
OPENSUSE-SU-2025_0557-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0428-1
SUSE-SU-2025:0499-1
SUSE-SU-2025:0557-1
SUSE-SU-2025:0565-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0428-1
SUSE-SU-2025_0499-1
SUSE-SU-2025_0557-1
USN-7276-1
USN-7277-1
USN-7310-1
USN-7387-1
USN-7387-2
USN-7387-3
USN-7388-1
USN-7389-1
USN-7390-1
USN-7391-1
USN-7392-1
USN-7392-2
USN-7392-3
USN-7392-4
USN-7393-1
USN-7401-1
USN-7407-1
USN-7413-1
USN-7421-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7458-1
USN-7459-1
USN-7459-2
USN-7463-1
USN-7468-1
USN-7523-1
USN-7524-1
USN-7539-1
USN-7540-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu