VDB
BDU%3A2024-03938
BDU%3A2024-03938
PUBLISHED
CVSS 4.599999904632568 MEDIUM
Уязвимость функции tcp_ao_connect_init() реализации протокола IPv4 ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
4.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Сообщество свободного программного обеспечения | Astra Linux Special Edition (запись в едином реестре российских программ №369), Linux | |
| Linux | Linux | 6.8.9, 7c2ffaf21bd67f73d21560995ce17eaf5fc1d37f, 6.9 |
| linux | linux_kernel | 6.7, 7c2ffaf21bd6, 7c2ffaf21bd6 |
| linux | linux_kernel | 6.7, 6.7 |
Timeline
- May 9, 2024 CVE Published
- Sep 12, 2024 CVE Updated
- Sep 23, 2024 PoC Published
References
- https://git.kernel.org/stable/c/ca4fb6c6764b3f75b4f5aa81db1536291897ff7f url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2024-0830SE17 url
- https://git.kernel.org/linus/80e679b352c3ce5158f3f778cfb77eb767e586fb advisory
- https://git.kernel.org/stable/c/80e679b352c3ce5158f3f778cfb77eb767e586fb url
- https://lore.kernel.org/linux-cve-announce/2024050836-CVE-2024-27394-4277@gregkh/T/#u url
- https://www.cve.org/CVERecord?id=CVE-2024-27394 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.8.9 url