PT-2025-3658 · Linux+5 · Linux Kernel+5

Joshua Washington

·

Published

2024-12-18

·

Updated

2025-10-03

·

CVE-2024-57933

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.74
Description A vulnerability in the Linux kernel has been resolved, which guarded XSK operations on the existence of queues. If the interface is down, disabling or enabling XSK pools would result in a crash, as the RX queue pointer would be NULL. The patch predicates the enabling and disabling of XSK pools on the existence of queues. Additionally, xsk wakeup needs to be guarded against queues disappearing while the function is executing, so a check against the GVE PRIV FLAGS NAPI ENABLED flag is added to synchronize with the disabling of the bit and the synchronize net() in gve turndown.
Recommendations For Linux kernel versions prior to 6.6.74, update to version 6.6.74 or later to resolve the issue. As a temporary workaround, consider disabling XSK pool operations when the interface is down to prevent crashes. Restrict access to xsk wakeup to minimize the risk of exploitation. Avoid using the GVE PRIV FLAGS NAPI ENABLED flag in vulnerable configurations until the issue is resolved.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2025-12647
ALT-PU-2025-3483
ALT-PU-2025-3507
AZL-56137
BDU:2025-01839
CVE-2024-57933
MGASA-2025-0030
MGASA-2025-0032
OESA-2025-1110
OESA-2025-1111
OPENSUSE-SU-2025_0428-1
OPENSUSE-SU-2025_0499-1
OPENSUSE-SU-2025_0557-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0428-1
SUSE-SU-2025:0499-1
SUSE-SU-2025:0557-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0428-1
SUSE-SU-2025_0499-1
SUSE-SU-2025_0557-1
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1
USN-7513-1
USN-7513-2
USN-7513-3
USN-7513-4
USN-7513-5
USN-7514-1
USN-7515-1
USN-7515-2
USN-7522-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Suse
Ubuntu