跳转到帖子

Huawei EulerOS: CVE-2024-35897: kernel security update

recommended_posts

发布于
  • Members

Huawei EulerOS: CVE-2024-35897: kernel security update

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
05/19/2024
Created
10/10/2024
Added
10/09/2024
Modified
10/09/2024

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: discard table flag update with pending basechain deletion Hook unregistration is deferred to the commit phase, same occurs with hook updates triggered by the table dormant flag. When both commands are combined, this results in deleting a basechain while leaving its hook still registered in the core.

Solution(s)

  • huawei-euleros-2_0_sp12-upgrade-bpftool
  • huawei-euleros-2_0_sp12-upgrade-kernel
  • huawei-euleros-2_0_sp12-upgrade-kernel-abi-stablelists
  • huawei-euleros-2_0_sp12-upgrade-kernel-tools
  • huawei-euleros-2_0_sp12-upgrade-kernel-tools-libs
  • huawei-euleros-2_0_sp12-upgrade-python3-perf

References

  • https://attackerkb.com/topics/cve-2024-35897
  • CVE - 2024-35897
  • EulerOS-SA-2024-2544
  • 查看数 697
  • 已创建
  • 最后回复