VDB
BDU%3A2024-08190
BDU%3A2024-08190
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции bpf_link_free() ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, ООО «Ред Софт», Canonical Ltd., ООО «РусБИТех-Астра», АО "НППКТ" | Debian GNU/Linux, РЕД ОС (запись в едином реестре российских программ №3751), Ubuntu, Astra Linux Special Edition (запись в едином реестре российских программ №369), Linux, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913) |
Timeline
- Oct 18, 2024 CVE Published
- Apr 30, 2025 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- https://git.kernel.org/stable/c/fa97b8fed9896f1e89cb657513e483a152d4c382 url
- https://git.kernel.org/stable/c/91cff53136daeff50816b0baeafd38a6976f6209 url
- https://git.kernel.org/stable/c/2884dc7d08d98a89d8d65121524bb7533183a63a url
- https://www.cve.org/CVERecord?id=CVE-2024-40909 url
- https://git.kernel.org/linus/2884dc7d08d98a89d8d65121524bb7533183a63a url
- https://ubuntu.com/security/notices/USN-6999-1 url
- https://ubuntu.com/security/notices/USN-7004-1 url
- https://ubuntu.com/security/notices/USN-7005-1 url
- https://ubuntu.com/security/notices/USN-7008-1 url
- https://ubuntu.com/security/notices/USN-7005-2 url
- https://ubuntu.com/security/notices/USN-6999-2 url
- https://ubuntu.com/security/notices/USN-7029-1 url
- https://redos.red-soft.ru/support/secure/uyazvimosti/mnozhestvennye-uyazvimosti-kernel-lt-0512242/?sphrase_id=597838 url
- https://поддержка.нппкт.рф/bin/view/ОСнова/Обновления/2.12/ url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-0411SE18 url
- https://lore.kernel.org/linux-cve-announce/2024071210-CVE-2024-40909-1706@gregkh/ advisory
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.35 advisory
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.9.6 advisory
- https://security-tracker.debian.org/tracker/CVE-2024-40909 advisory
- https://ubuntu.com/security/CVE-2024-40909 advisory