PT-2024-9773 · Linux+5 · Linux Kernel+5

Published

2024-05-31

·

Updated

2025-09-29

·

CVE-2024-40923

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel version 6.9.3
Description: The vulnerability is related to the vmxnet3 component of the Linux kernel. When the vmxnet3 rq create() function fails to allocate memory for rq->data ring.base, the subsequent call to vmxnet3 rq destroy all rxdataring does not reset rq->data ring.desc size for the data ring that failed. This causes the hypervisor to reference the data ring on packet reception, leading to a potential denial-of-service issue. The vulnerability can be fixed by setting rq->data ring.desc size to 0.
Recommendations: To resolve this issue, update the Linux kernel to a version that includes the fix for this vulnerability. Specifically, ensure that the rq->data ring.desc size is set to 0 when vmxnet3 rq create() fails to allocate memory for rq->data ring.base. This can be achieved by applying the relevant patch or updating to a newer kernel version that includes this fix.
Note: The provided input descriptions do not specify the exact version that includes the fix, so it is recommended to update to the latest available kernel version to ensure the vulnerability is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
BDU:2024-11519
CVE-2024-40923
INFSA-2024_9315
OESA-2024-1897
OPENSUSE-SU-2024_2947-1
RHSA-2024:9315
RHSA-2024_9315
SUSE-SU-2024:2802-1
SUSE-SU-2024:2892-1
SUSE-SU-2024:2894-1
SUSE-SU-2024:2896-1
SUSE-SU-2024:2901-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2940-1
SUSE-SU-2024:2947-1
SUSE-SU-2024:2973-1
SUSE-SU-2025:20008-1
SUSE-SU-2025:20028-1
USN-6999-1
USN-6999-2
USN-7004-1
USN-7005-1
USN-7005-2
USN-7008-1
USN-7029-1

Affected Products

Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu