PT-2024-9881 · Linux+8 · Linux Kernel+8

Budimir Markovic

·

Published

2024-10-24

·

Updated

2025-10-03

·

CVE-2024-53057

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: The issue is related to the use of memory after it has been freed in the qdisc tree reduce backlog() function of the Linux kernel. This can lead to a denial of service. The problem arises from an incorrect assumption about Qdiscs with a major handle of ffff: being either root or ingress, which can cause a use-after-free (UAF) error with a dangling class pointer. The vulnerability can be exploited by creating egress Qdiscs with a major handle of ffff:.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-16040
ALT-PU-2024-16172
ALT-PU-2024-17099
ALT-PU-2024-17211
ALT-PU-2024-17891
ALT-PU-2025-12647
AZL-53855
AZL-53921
BDU:2024-11659
CVE-2024-53057
DLA-4008-1
DLA-4075-1
DSA-5818-1
INFSA-2025_6966
OESA-2024-2537
OESA-2024-2570
OESA-2025-1158
OESA-2025-1162
OPENSUSE-SU-2025_1177-1
OPENSUSE-SU-2025_1178-1
OPENSUSE-SU-2025_1180-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2025:01919-1
SUSE-SU-2025:01951-1
SUSE-SU-2025:01967-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:0236-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:02588-1
SUSE-SU-2025:02844-1
SUSE-SU-2025:02844-2
SUSE-SU-2025:02848-1
SUSE-SU-2025:02850-1
SUSE-SU-2025:02852-1
SUSE-SU-2025:1177-1
SUSE-SU-2025:1178-1
SUSE-SU-2025:1180-1
SUSE-SU-2025:20190-1
SUSE-SU-2025:20192-1
SUSE-SU-2025:20260-1
SUSE-SU-2025:20270-1
SUSE-SU-2025:2588-1
SUSE-SU-2025_01951-1
SUSE-SU-2025_01967-1
SUSE-SU-2025_0236-1
SUSE-SU-2025_02537-1
SUSE-SU-2025_02588-1
SUSE-SU-2025_02844-1
SUSE-SU-2025_02844-2
SUSE-SU-2025_02848-1
SUSE-SU-2025_1177-1
SUSE-SU-2025_1178-1
SUSE-SU-2025_1180-1
USN-7163-1
USN-7167-1
USN-7167-2
USN-7169-1
USN-7169-2
USN-7169-3
USN-7169-4
USN-7169-5
USN-7170-1
USN-7173-1
USN-7173-2
USN-7173-3
USN-7179-1
USN-7179-2
USN-7179-3
USN-7179-4
USN-7183-1
USN-7184-1
USN-7185-1
USN-7185-2
USN-7186-1
USN-7186-2
USN-7194-1
USN-7195-1
USN-7195-2
USN-7196-1
USN-7413-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu