PT-2024-9913 · Linux+10 · Linux Kernel+10

Bing-Jhong Billy Jheng

+1

·

Published

2024-06-21

·

Updated

2025-09-29

·

CVE-2024-41009

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: The issue is related to the BPF ring buffer in the Linux kernel, which is implemented as a power-of-2 sized circular buffer with two logical and ever-increasing counters: consumer pos and producer pos. The vulnerability allows an attacker to make a second allocated memory chunk overlapping with the first chunk, enabling the BPF program to edit the first chunk's header. This can cause bpf ringbuf commit() to refer to the wrong page and potentially lead to a crash. The fix involves calculating the oldest pending position and checking whether the range from the oldest outstanding record to the newest would span beyond the ring buffer size, rejecting the request if necessary.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:10274
ALSA-2024:8856
ALSA-2024:8870
ALSA-2024_10274
ALSA-2025_16880
ALT-PU-2024-10855
ALT-PU-2024-11524
ALT-PU-2024-13979
ALT-PU-2024-14046
AZL-43396
AZL-43409
BDU:2025-00022
CESA-2024_8856
CESA-2024_8870
CVE-2024-41009
DLA-4008-1
DSA-5747-1
INFSA-2024_10274
INFSA-2024_8856
INFSA-2024_8870
OESA-2024-1894
OESA-2024-1896
OESA-2024-1897
OPENSUSE-SU-2024_2947-1
OPENSUSE-SU-2024_3190-1
OPENSUSE-SU-2024_3209-1
OPENSUSE-SU-2024_3249-1
OPENSUSE-SU-2024_3408-1
OPENSUSE-SU-2024_3483-1
RHSA-2024:10262
RHSA-2024:10274
RHSA-2024:10771
RHSA-2024:10772
RHSA-2024:10773
RHSA-2024:6753
RHSA-2024:8856
RHSA-2024:8870
RHSA-2024_10274
RHSA-2024_8856
RHSA-2024_8870
RLSA-2024:8856
RLSA-2024:8870
SUSE-SU-2024:2894-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2947-1
SUSE-SU-2024:3190-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3209-1
SUSE-SU-2024:3225-1
SUSE-SU-2024:3227-1
SUSE-SU-2024:3249-1
SUSE-SU-2024:3383-1
SUSE-SU-2024:3408-1
SUSE-SU-2024:3483-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
USN-7020-1
USN-7020-2
USN-7020-3
USN-7020-4
USN-7021-1
USN-7021-2
USN-7021-3
USN-7021-4
USN-7021-5
USN-7029-1
USN-7156-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu