跳转到帖子

Oracle Linux: CVE-2024-35897: ELSA-2024-5101: kernel security update (IMPORTANT) (Multiple Advisories)

recommended_posts

发布于
  • Members

Oracle Linux: CVE-2024-35897: ELSA-2024-5101:kernel security update (IMPORTANT) (Multiple Advisories)

Severity
5
CVSS
(AV:L/AC:L/Au:S/C:N/I:N/A:C)
Published
05/19/2024
Created
08/20/2024
Added
08/16/2024
Modified
12/06/2024

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: discard table flag update with pending basechain deletion Hook unregistration is deferred to the commit phase, same occurs with hook updates triggered by the table dormant flag. When both commands are combined, this results in deleting a basechain while leaving its hook still registered in the core.

Solution(s)

  • oracle-linux-upgrade-kernel

References

  • https://attackerkb.com/topics/cve-2024-35897
  • CVE - 2024-35897
  • ELSA-2024-5101
  • ELSA-2024-5928
  • 查看数 697
  • 已创建
  • 最后回复