CVE-2024-39463 (GCVE-0-2024-39463)
Vulnerability from cvelistv5
Published
2024-06-25 14:25
Modified
2026-08-05 11:33
Summary
In the Linux kernel, the following vulnerability has been resolved: 9p: add missing locking around taking dentry fid list Fix a use-after-free on dentry's d_fsdata fid list when a thread looks up a fid through dentry while another thread unlinks it: UAF thread: refcount_t: addition on 0; use-after-free. p9_fid_get linux/./include/net/9p/client.h:262 v9fs_fid_find+0x236/0x280 linux/fs/9p/fid.c:129 v9fs_fid_lookup_with_uid linux/fs/9p/fid.c:181 v9fs_fid_lookup+0xbf/0xc20 linux/fs/9p/fid.c:314 v9fs_vfs_getattr_dotl+0xf9/0x360 linux/fs/9p/vfs_inode_dotl.c:400 vfs_statx+0xdd/0x4d0 linux/fs/stat.c:248 Freed by: p9_fid_destroy (inlined) p9_client_clunk+0xb0/0xe0 linux/net/9p/client.c:1456 p9_fid_put linux/./include/net/9p/client.h:278 v9fs_dentry_release+0xb5/0x140 linux/fs/9p/vfs_dentry.c:55 v9fs_remove+0x38f/0x620 linux/fs/9p/vfs_inode.c:518 vfs_unlink+0x29a/0x810 linux/fs/namei.c:4335 The problem is that d_fsdata was not accessed under d_lock, because d_release() normally is only called once the dentry is otherwise no longer accessible but since we also call it explicitly in v9fs_remove that lock is required: move the hlist out of the dentry under lock then unref its fids once they are no longer accessible.
Impacted products
Vendor Product Version
Linux Linux Version: 154372e67d4053e56591245eb413686621941333
Version: 154372e67d4053e56591245eb413686621941333
Version: 154372e67d4053e56591245eb413686621941333
Version: 154372e67d4053e56591245eb413686621941333
Version: 154372e67d4053e56591245eb413686621941333
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-02T04:26:15.245Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/cb299cdba09f46f090b843d78ba26b667d50a456"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/f0c5c944c6d8614c19e6e9a97fd2011dcd30e8f5"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/fe17ebf22feb4ad7094d597526d558a49aac92b4"
          },
          {
            "tags": [
              "x_transferred"
            ],
            "url": "https://git.kernel.org/stable/c/c898afdc15645efb555acb6d85b484eb40a45409"
          }
        ],
        "title": "CVE Program Container"
      },
      {
        "affected": [
          {
            "cpes": [
              "cpe:2.3:o:linux:linux_kernel:5.11:*:*:*:*:*:*:*"
            ],
            "defaultStatus": "affected",
            "product": "linux_kernel",
            "vendor": "linux",
            "versions": [
              {
                "status": "affected",
                "version": "5.11"
              }
            ]
          },
          {
            "cpes": [
              "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*"
            ],
            "defaultStatus": "unaffected",
            "product": "linux_kernel",
            "vendor": "linux",
            "versions": [
              {
                "lessThan": "cb299cdba09f",
                "status": "affected",
                "version": "154372e67d40",
                "versionType": "custom"
              },
              {
                "lessThan": "f0c5c944c6d8",
                "status": "affected",
                "version": "154372e67d40",
                "versionType": "custom"
              },
              {
                "lessThan": "fe17ebf22feb",
                "status": "affected",
                "version": "154372e67d40",
                "versionType": "custom"
              },
              {
                "lessThan": "c898afdc1564",
                "status": "affected",
                "version": "154372e67d40",
                "versionType": "custom"
              }
            ]
          }
        ],
        "metrics": [
          {
            "cvssV3_1": {
              "attackComplexity": "LOW",
              "attackVector": "LOCAL",
              "availabilityImpact": "HIGH",
              "baseScore": 7.8,
              "baseSeverity": "HIGH",
              "confidentialityImpact": "HIGH",
              "integrityImpact": "HIGH",
              "privilegesRequired": "LOW",
              "scope": "UNCHANGED",
              "userInteraction": "NONE",
              "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
              "version": "3.1"
            }
          },
          {
            "other": {
              "content": {
                "id": "CVE-2024-39463",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "no"
                  },
                  {
                    "Technical Impact": "total"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2024-09-10T03:55:21.281977Z",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "problemTypes": [
          {
            "descriptions": [
              {
                "cweId": "CWE-416",
                "description": "CWE-416 Use After Free",
                "lang": "en",
                "type": "CWE"
              }
            ]
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2024-09-10T15:36:18.860Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      }
    ],
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "Linux",
          "programFiles": [
            "fs/9p/vfs_dentry.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "lessThan": "3bb6763a8319170c2d41c4232c8e7e4c37dcacfb",
              "status": "affected",
              "version": "154372e67d4053e56591245eb413686621941333",
              "versionType": "git"
            },
            {
              "lessThan": "cb299cdba09f46f090b843d78ba26b667d50a456",
              "status": "affected",
              "version": "154372e67d4053e56591245eb413686621941333",
              "versionType": "git"
            },
            {
              "lessThan": "f0c5c944c6d8614c19e6e9a97fd2011dcd30e8f5",
              "status": "affected",
              "version": "154372e67d4053e56591245eb413686621941333",
              "versionType": "git"
            },
            {
              "lessThan": "fe17ebf22feb4ad7094d597526d558a49aac92b4",
              "status": "affected",
              "version": "154372e67d4053e56591245eb413686621941333",
              "versionType": "git"
            },
            {
              "lessThan": "c898afdc15645efb555acb6d85b484eb40a45409",
              "status": "affected",
              "version": "154372e67d4053e56591245eb413686621941333",
              "versionType": "git"
            }
          ]
        },
        {
          "defaultStatus": "affected",
          "product": "Linux",
          "programFiles": [
            "fs/9p/vfs_dentry.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "5.11"
            },
            {
              "lessThan": "5.11",
              "status": "unaffected",
              "version": "0",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "5.15.*",
              "status": "unaffected",
              "version": "5.15.168",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.1.*",
              "status": "unaffected",
              "version": "6.1.94",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.6.*",
              "status": "unaffected",
              "version": "6.6.34",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.9.*",
              "status": "unaffected",
              "version": "6.9.5",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "*",
              "status": "unaffected",
              "version": "6.10",
              "versionType": "original_commit_for_fix"
            }
          ]
        }
      ],
      "cpeApplicability": [
        {
          "nodes": [
            {
              "cpeMatch": [
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "5.15.168",
                  "versionStartIncluding": "5.11",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.1.94",
                  "versionStartIncluding": "5.11",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.6.34",
                  "versionStartIncluding": "5.11",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.9.5",
                  "versionStartIncluding": "5.11",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.10",
                  "versionStartIncluding": "5.11",
                  "vulnerable": true
                }
              ],
              "negate": false,
              "operator": "OR"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "In the Linux kernel, the following vulnerability has been resolved:\n\n9p: add missing locking around taking dentry fid list\n\nFix a use-after-free on dentry\u0027s d_fsdata fid list when a thread\nlooks up a fid through dentry while another thread unlinks it:\n\nUAF thread:\nrefcount_t: addition on 0; use-after-free.\n p9_fid_get linux/./include/net/9p/client.h:262\n v9fs_fid_find+0x236/0x280 linux/fs/9p/fid.c:129\n v9fs_fid_lookup_with_uid linux/fs/9p/fid.c:181\n v9fs_fid_lookup+0xbf/0xc20 linux/fs/9p/fid.c:314\n v9fs_vfs_getattr_dotl+0xf9/0x360 linux/fs/9p/vfs_inode_dotl.c:400\n vfs_statx+0xdd/0x4d0 linux/fs/stat.c:248\n\nFreed by:\n p9_fid_destroy (inlined)\n p9_client_clunk+0xb0/0xe0 linux/net/9p/client.c:1456\n p9_fid_put linux/./include/net/9p/client.h:278\n v9fs_dentry_release+0xb5/0x140 linux/fs/9p/vfs_dentry.c:55\n v9fs_remove+0x38f/0x620 linux/fs/9p/vfs_inode.c:518\n vfs_unlink+0x29a/0x810 linux/fs/namei.c:4335\n\nThe problem is that d_fsdata was not accessed under d_lock, because\nd_release() normally is only called once the dentry is otherwise no\nlonger accessible but since we also call it explicitly in v9fs_remove\nthat lock is required:\nmove the hlist out of the dentry under lock then unref its fids once\nthey are no longer accessible."
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "baseScore": 7.8,
            "baseSeverity": "HIGH",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "scenarios": [
            {
              "lang": "en",
              "value": "AV:L - The race is triggered entirely through local syscalls (`statx()`/`getxattr()` and `unlink()`) issued against a mounted 9p filesystem; no network peer input is required to reach the vulnerable code.\nAC:L - The attacker controls both sides of the race by running two threads (one looping statx, one looping unlink) on the same path, and the window is exceptionally wide because the freed fid remains linked in `d_fsdata` for the entire blocking TCLUNK RPC round-trip; nothing in VFS serializes statx against vfs_unlink.\nPR:L - An unprivileged local user with access to an existing 9p mount (QEMU virtfs share, WSL2, Crostini, Kata/LXD VM guests) can trigger this \u2014 both statx and unlink are unprivileged operations needing only write permission on a directory the user already owns.\nUI:N - The attacker performs both racing operations themselves; no victim action is required, as the 9p mount is a pre-existing deployment property rather than an action induced from a user.\nS:U - The use-after-free corrupts kernel heap memory within the same kernel security authority; it yields local kernel privilege escalation, not a crossing of a VM/IOMMU boundary.\nC:H - The dangling `struct p9_fid` comes from a general kmalloc slab and is dereferenced after free (`fid-\u003eclnt`, `fid-\u003efid`), so heap reclamation gives the attacker a read primitive over adjacent/reclaimed kernel objects and disclosure of kernel pointers.\nI:H - The UAF provides refcount writes into freed memory, a controlled `fid-\u003eclnt` pointer dereference used for spinlock/`idr_remove()` operations, a `kfree(fid-\u003erdir)` arbitrary-free, and a double free \u2014 a classic path to arbitrary write and control-flow hijack.\nA:H - Even unweaponized, the bug produces a `refcount_t: addition on 0` splat, slab corruption, and kernel oops/panic, and can be triggered repeatedly by any local user with access to the mount."
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-08-05T11:33:24.281Z",
        "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
        "shortName": "Linux"
      },
      "references": [
        {
          "url": "https://git.kernel.org/stable/c/3bb6763a8319170c2d41c4232c8e7e4c37dcacfb"
        },
        {
          "url": "https://git.kernel.org/stable/c/cb299cdba09f46f090b843d78ba26b667d50a456"
        },
        {
          "url": "https://git.kernel.org/stable/c/f0c5c944c6d8614c19e6e9a97fd2011dcd30e8f5"
        },
        {
          "url": "https://git.kernel.org/stable/c/fe17ebf22feb4ad7094d597526d558a49aac92b4"
        },
        {
          "url": "https://git.kernel.org/stable/c/c898afdc15645efb555acb6d85b484eb40a45409"
        },
        {
          "url": "https://www.zerodayinitiative.com/advisories/ZDI-24-1194/"
        }
      ],
      "title": "9p: add missing locking around taking dentry fid list",
      "x_generator": {
        "engine": "bippy-1.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
    "assignerShortName": "Linux",
    "cveId": "CVE-2024-39463",
    "datePublished": "2024-06-25T14:25:02.887Z",
    "dateReserved": "2024-06-25T14:23:23.744Z",
    "dateUpdated": "2026-08-05T11:33:24.281Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "vulnerability-lookup:meta": {
    "vulnrichment": {
      "containers": "{\"adp\": [{\"title\": \"CVE Program Container\", \"references\": [{\"url\": \"https://git.kernel.org/stable/c/cb299cdba09f46f090b843d78ba26b667d50a456\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/f0c5c944c6d8614c19e6e9a97fd2011dcd30e8f5\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/fe17ebf22feb4ad7094d597526d558a49aac92b4\", \"tags\": [\"x_transferred\"]}, {\"url\": \"https://git.kernel.org/stable/c/c898afdc15645efb555acb6d85b484eb40a45409\", \"tags\": [\"x_transferred\"]}], \"providerMetadata\": {\"orgId\": \"af854a3a-2127-422b-91ae-364da2661108\", \"shortName\": \"CVE\", \"dateUpdated\": \"2024-08-02T04:26:15.245Z\"}}, {\"title\": \"CISA ADP Vulnrichment\", \"metrics\": [{\"cvssV3_1\": {\"scope\": \"UNCHANGED\", \"version\": \"3.1\", \"baseScore\": 7.8, \"attackVector\": \"LOCAL\", \"baseSeverity\": \"HIGH\", \"vectorString\": \"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H\", \"integrityImpact\": \"HIGH\", \"userInteraction\": \"NONE\", \"attackComplexity\": \"LOW\", \"availabilityImpact\": \"HIGH\", \"privilegesRequired\": \"LOW\", \"confidentialityImpact\": \"HIGH\"}}, {\"other\": {\"type\": \"ssvc\", \"content\": {\"id\": \"CVE-2024-39463\", \"role\": \"CISA Coordinator\", \"options\": [{\"Exploitation\": \"none\"}, {\"Automatable\": \"no\"}, {\"Technical Impact\": \"total\"}], \"version\": \"2.0.3\", \"timestamp\": \"2024-09-10T03:55:21.281977Z\"}}}], \"affected\": [{\"cpes\": [\"cpe:2.3:o:linux:linux_kernel:5.11:*:*:*:*:*:*:*\"], \"vendor\": \"linux\", \"product\": \"linux_kernel\", \"versions\": [{\"status\": \"affected\", \"version\": \"5.11\"}], \"defaultStatus\": \"affected\"}, {\"cpes\": [\"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\"], \"vendor\": \"linux\", \"product\": \"linux_kernel\", \"versions\": [{\"status\": \"affected\", \"version\": \"154372e67d40\", \"lessThan\": \"cb299cdba09f\", \"versionType\": \"custom\"}, {\"status\": \"affected\", \"version\": \"154372e67d40\", \"lessThan\": \"f0c5c944c6d8\", \"versionType\": \"custom\"}, {\"status\": \"affected\", \"version\": \"154372e67d40\", \"lessThan\": \"fe17ebf22feb\", \"versionType\": \"custom\"}, {\"status\": \"affected\", \"version\": \"154372e67d40\", \"lessThan\": \"c898afdc1564\", \"versionType\": \"custom\"}], \"defaultStatus\": \"unaffected\"}], \"problemTypes\": [{\"descriptions\": [{\"lang\": \"en\", \"type\": \"CWE\", \"cweId\": \"CWE-416\", \"description\": \"CWE-416 Use After Free\"}]}], \"providerMetadata\": {\"orgId\": \"134c704f-9b21-4f2e-91b3-4a467353bcc0\", \"shortName\": \"CISA-ADP\", \"dateUpdated\": \"2024-09-10T15:33:58.445Z\"}}], \"cna\": {\"title\": \"9p: add missing locking around taking dentry fid list\", \"affected\": [{\"repo\": \"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git\", \"vendor\": \"Linux\", \"product\": \"Linux\", \"versions\": [{\"status\": \"affected\", \"version\": \"154372e67d4053e56591245eb413686621941333\", \"lessThan\": \"3bb6763a8319170c2d41c4232c8e7e4c37dcacfb\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"154372e67d4053e56591245eb413686621941333\", \"lessThan\": \"cb299cdba09f46f090b843d78ba26b667d50a456\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"154372e67d4053e56591245eb413686621941333\", \"lessThan\": \"f0c5c944c6d8614c19e6e9a97fd2011dcd30e8f5\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"154372e67d4053e56591245eb413686621941333\", \"lessThan\": \"fe17ebf22feb4ad7094d597526d558a49aac92b4\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"154372e67d4053e56591245eb413686621941333\", \"lessThan\": \"c898afdc15645efb555acb6d85b484eb40a45409\", \"versionType\": \"git\"}], \"programFiles\": [\"fs/9p/vfs_dentry.c\"], \"defaultStatus\": \"unaffected\"}, {\"repo\": \"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git\", \"vendor\": \"Linux\", \"product\": \"Linux\", \"versions\": [{\"status\": \"affected\", \"version\": \"5.11\"}, {\"status\": \"unaffected\", \"version\": \"0\", \"lessThan\": \"5.11\", \"versionType\": \"semver\"}, {\"status\": \"unaffected\", \"version\": \"5.15.168\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"5.15.*\"}, {\"status\": \"unaffected\", \"version\": \"6.1.94\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.1.*\"}, {\"status\": \"unaffected\", \"version\": \"6.6.34\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.6.*\"}, {\"status\": \"unaffected\", \"version\": \"6.9.5\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.9.*\"}, {\"status\": \"unaffected\", \"version\": \"6.10\", \"versionType\": \"original_commit_for_fix\", \"lessThanOrEqual\": \"*\"}], \"programFiles\": [\"fs/9p/vfs_dentry.c\"], \"defaultStatus\": \"affected\"}], \"references\": [{\"url\": \"https://git.kernel.org/stable/c/3bb6763a8319170c2d41c4232c8e7e4c37dcacfb\"}, {\"url\": \"https://git.kernel.org/stable/c/cb299cdba09f46f090b843d78ba26b667d50a456\"}, {\"url\": \"https://git.kernel.org/stable/c/f0c5c944c6d8614c19e6e9a97fd2011dcd30e8f5\"}, {\"url\": \"https://git.kernel.org/stable/c/fe17ebf22feb4ad7094d597526d558a49aac92b4\"}, {\"url\": \"https://git.kernel.org/stable/c/c898afdc15645efb555acb6d85b484eb40a45409\"}, {\"url\": \"https://www.zerodayinitiative.com/advisories/ZDI-24-1194/\"}], \"x_generator\": {\"engine\": \"bippy-1.2.0\"}, \"descriptions\": [{\"lang\": \"en\", \"value\": \"In the Linux kernel, the following vulnerability has been resolved:\\n\\n9p: add missing locking around taking dentry fid list\\n\\nFix a use-after-free on dentry\u0027s d_fsdata fid list when a thread\\nlooks up a fid through dentry while another thread unlinks it:\\n\\nUAF thread:\\nrefcount_t: addition on 0; use-after-free.\\n p9_fid_get linux/./include/net/9p/client.h:262\\n v9fs_fid_find+0x236/0x280 linux/fs/9p/fid.c:129\\n v9fs_fid_lookup_with_uid linux/fs/9p/fid.c:181\\n v9fs_fid_lookup+0xbf/0xc20 linux/fs/9p/fid.c:314\\n v9fs_vfs_getattr_dotl+0xf9/0x360 linux/fs/9p/vfs_inode_dotl.c:400\\n vfs_statx+0xdd/0x4d0 linux/fs/stat.c:248\\n\\nFreed by:\\n p9_fid_destroy (inlined)\\n p9_client_clunk+0xb0/0xe0 linux/net/9p/client.c:1456\\n p9_fid_put linux/./include/net/9p/client.h:278\\n v9fs_dentry_release+0xb5/0x140 linux/fs/9p/vfs_dentry.c:55\\n v9fs_remove+0x38f/0x620 linux/fs/9p/vfs_inode.c:518\\n vfs_unlink+0x29a/0x810 linux/fs/namei.c:4335\\n\\nThe problem is that d_fsdata was not accessed under d_lock, because\\nd_release() normally is only called once the dentry is otherwise no\\nlonger accessible but since we also call it explicitly in v9fs_remove\\nthat lock is required:\\nmove the hlist out of the dentry under lock then unref its fids once\\nthey are no longer accessible.\"}], \"cpeApplicability\": [{\"nodes\": [{\"negate\": false, \"cpeMatch\": [{\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"5.15.168\", \"versionStartIncluding\": \"5.11\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.1.94\", \"versionStartIncluding\": \"5.11\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.6.34\", \"versionStartIncluding\": \"5.11\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.9.5\", \"versionStartIncluding\": \"5.11\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.10\", \"versionStartIncluding\": \"5.11\"}], \"operator\": \"OR\"}]}], \"providerMetadata\": {\"orgId\": \"416baaa9-dc9f-4396-8d5f-8c081fb06d67\", \"shortName\": \"Linux\", \"dateUpdated\": \"2026-05-11T20:21:01.570Z\"}}}",
      "cveMetadata": "{\"cveId\": \"CVE-2024-39463\", \"state\": \"PUBLISHED\", \"dateUpdated\": \"2026-05-11T20:21:01.570Z\", \"dateReserved\": \"2024-06-25T14:23:23.744Z\", \"assignerOrgId\": \"416baaa9-dc9f-4396-8d5f-8c081fb06d67\", \"datePublished\": \"2024-06-25T14:25:02.887Z\", \"assignerShortName\": \"Linux\"}",
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }
  }
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…