CVE-2024-56651 (GCVE-0-2024-56651)
Vulnerability from cvelistv5
Published
2024-12-27 15:02
Modified
2026-08-05 11:45
Summary
In the Linux kernel, the following vulnerability has been resolved: can: hi311x: hi3110_can_ist(): fix potential use-after-free The commit a22bd630cfff ("can: hi311x: do not report txerr and rxerr during bus-off") removed the reporting of rxerr and txerr even in case of correct operation (i. e. not bus-off). The error count information added to the CAN frame after netif_rx() is a potential use after free, since there is no guarantee that the skb is in the same state. It might be freed or reused. Fix the issue by postponing the netif_rx() call in case of txerr and rxerr reporting.
Impacted products
Vendor Product Version
Linux Linux Version: a22bd630cfff496b270211745536e50e98eb3a45
Version: a22bd630cfff496b270211745536e50e98eb3a45
Version: a22bd630cfff496b270211745536e50e98eb3a45
Version: a22bd630cfff496b270211745536e50e98eb3a45
Version: 303733fdab728d34708014b3096dc69ebae6e531
Version: 410054f1cf75378a6f009359e5952a240102a1a2
Version: d20bf7e76136fd4c1e47502a1f5773f2290013ed
Version: 22e382d47de09e865a9214cc5c9f99256e65deaa
Version: dcfcd5fc999b1eb7946de1fd031bc3aaf224c5ae
Version: 330b0ac34beec4fef8b002549af5bc6d0b6f0836
Version: f3d865a6b791abbc874739ed702ae64ad2607511
Version: 4.14.291   
Version: 4.19.256   
Version: 5.4.211   
Version: 5.10.137   
Version: 5.15.61   
Version: 5.18.18   
Version: 5.19.2   
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "metrics": [
          {
            "cvssV3_1": {
              "attackComplexity": "LOW",
              "attackVector": "LOCAL",
              "availabilityImpact": "HIGH",
              "baseScore": 7.8,
              "baseSeverity": "HIGH",
              "confidentialityImpact": "HIGH",
              "integrityImpact": "HIGH",
              "privilegesRequired": "LOW",
              "scope": "UNCHANGED",
              "userInteraction": "NONE",
              "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
              "version": "3.1"
            }
          },
          {
            "other": {
              "content": {
                "id": "CVE-2024-56651",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "no"
                  },
                  {
                    "Technical Impact": "total"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2025-02-11T15:41:42.778830Z",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "problemTypes": [
          {
            "descriptions": [
              {
                "cweId": "CWE-416",
                "description": "CWE-416 Use After Free",
                "lang": "en",
                "type": "CWE"
              }
            ]
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2025-02-11T15:45:21.578Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      },
      {
        "providerMetadata": {
          "dateUpdated": "2025-11-03T20:51:58.194Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "url": "https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html"
          }
        ],
        "title": "CVE Program Container"
      }
    ],
    "cna": {
      "affected": [
        {
          "defaultStatus": "unaffected",
          "product": "Linux",
          "programFiles": [
            "drivers/net/can/spi/hi311x.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "lessThan": "4ad77eb8f2e07bcfa0e28887d3c7dbb732d92cc1",
              "status": "affected",
              "version": "a22bd630cfff496b270211745536e50e98eb3a45",
              "versionType": "git"
            },
            {
              "lessThan": "1128022009444faf49359bd406cd665b177cb643",
              "status": "affected",
              "version": "a22bd630cfff496b270211745536e50e98eb3a45",
              "versionType": "git"
            },
            {
              "lessThan": "bc30b2fe8c54694f8ae08a5b8a5d174d16d93075",
              "status": "affected",
              "version": "a22bd630cfff496b270211745536e50e98eb3a45",
              "versionType": "git"
            },
            {
              "lessThan": "9ad86d377ef4a19c75a9c639964879a5b25a433b",
              "status": "affected",
              "version": "a22bd630cfff496b270211745536e50e98eb3a45",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "303733fdab728d34708014b3096dc69ebae6e531",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "410054f1cf75378a6f009359e5952a240102a1a2",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "d20bf7e76136fd4c1e47502a1f5773f2290013ed",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "22e382d47de09e865a9214cc5c9f99256e65deaa",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "dcfcd5fc999b1eb7946de1fd031bc3aaf224c5ae",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "330b0ac34beec4fef8b002549af5bc6d0b6f0836",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "f3d865a6b791abbc874739ed702ae64ad2607511",
              "versionType": "git"
            },
            {
              "lessThan": "4.15",
              "status": "affected",
              "version": "4.14.291",
              "versionType": "semver"
            },
            {
              "lessThan": "4.20",
              "status": "affected",
              "version": "4.19.256",
              "versionType": "semver"
            },
            {
              "lessThan": "5.5",
              "status": "affected",
              "version": "5.4.211",
              "versionType": "semver"
            },
            {
              "lessThan": "5.11",
              "status": "affected",
              "version": "5.10.137",
              "versionType": "semver"
            },
            {
              "lessThan": "5.16",
              "status": "affected",
              "version": "5.15.61",
              "versionType": "semver"
            },
            {
              "lessThan": "5.19",
              "status": "affected",
              "version": "5.18.18",
              "versionType": "semver"
            },
            {
              "lessThan": "5.20",
              "status": "affected",
              "version": "5.19.2",
              "versionType": "semver"
            }
          ]
        },
        {
          "defaultStatus": "affected",
          "product": "Linux",
          "programFiles": [
            "drivers/net/can/spi/hi311x.c"
          ],
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.0"
            },
            {
              "lessThan": "6.0",
              "status": "unaffected",
              "version": "0",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.1.*",
              "status": "unaffected",
              "version": "6.1.120",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.6.*",
              "status": "unaffected",
              "version": "6.6.66",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "6.12.*",
              "status": "unaffected",
              "version": "6.12.5",
              "versionType": "semver"
            },
            {
              "lessThanOrEqual": "*",
              "status": "unaffected",
              "version": "6.13",
              "versionType": "original_commit_for_fix"
            }
          ]
        }
      ],
      "cpeApplicability": [
        {
          "nodes": [
            {
              "cpeMatch": [
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.1.120",
                  "versionStartIncluding": "6.0",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.6.66",
                  "versionStartIncluding": "6.0",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.12.5",
                  "versionStartIncluding": "6.0",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionEndExcluding": "6.13",
                  "versionStartIncluding": "6.0",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.14.291",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "4.19.256",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.4.211",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.10.137",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.15.61",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.18.18",
                  "vulnerable": true
                },
                {
                  "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*",
                  "versionStartIncluding": "5.19.2",
                  "vulnerable": true
                }
              ],
              "negate": false,
              "operator": "OR"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "In the Linux kernel, the following vulnerability has been resolved:\n\ncan: hi311x: hi3110_can_ist(): fix potential use-after-free\n\nThe commit a22bd630cfff (\"can: hi311x: do not report txerr and rxerr\nduring bus-off\") removed the reporting of rxerr and txerr even in case\nof correct operation (i. e. not bus-off).\n\nThe error count information added to the CAN frame after netif_rx() is\na potential use after free, since there is no guarantee that the skb\nis in the same state. It might be freed or reused.\n\nFix the issue by postponing the netif_rx() call in case of txerr and\nrxerr reporting."
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "scenarios": [
            {
              "lang": "en",
              "value": "AV:A - The vulnerable path is driven by CAN bus error-state transitions (ERROR_WARNING/ERROR_PASSIVE), which any node sharing the physical CAN segment can force by injecting dominant bits or malformed/unacknowledged frames. CAN is a bounded shared bus, matching the CVSS \"logically adjacent topology\" definition rather than routable Network.\nAC:L - The free is deterministic, not a race \u2014 in threaded-IRQ context netif_rx() drains NET_RX_SOFTIRQ inline via local_bh_enable(), so process_backlog() consumes and frees the skb before netif_rx() returns, and the driver then unconditionally writes through the stale cf pointer. Driving TEC/REC across the error-warning/passive thresholds is entirely under the bus attacker\u0027s control and repeatable.\nPR:N - CAN provides no authentication, addressing, or access control; a peer node needs no credentials or account on the target system to inject the error conditions that trigger the path. The code path is also not gated by any ctrlmode flag or capability check.\nUI:N - No victim action is required \u2014 the CAN interface being up is normal operational state for a deployed device, and the interrupt handler runs automatically on controller error signalling.\nS:U - The use-after-free corrupts kernel slab memory within the same kernel security authority; no VM, IOMMU, or sandbox boundary is crossed.\nC:H - The freed skb buffer is immediately recycled, so subsequent kernel data can occupy it while a socket may still hold references to the corrupted frame, and UAF-corrupted skb metadata can be leveraged to disclose adjacent kernel heap contents.\nI:H - This is a use-after-free write: a bit-set at offset 0 plus two bytes at offsets 14/15 of the freed allocation, with values (txerr/rxerr) the bus attacker influences, repeatable on every error-state transition \u2014 a heap-grooming-friendly write primitive into reallocated kernel objects.\nA:H - Writing into freed and reallocated slab memory corrupts unrelated kernel structures, causing oops, slab corruption, or panic, and the trigger can be repeated indefinitely from the bus."
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-08-05T11:45:48.882Z",
        "orgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
        "shortName": "Linux"
      },
      "references": [
        {
          "url": "https://git.kernel.org/stable/c/4ad77eb8f2e07bcfa0e28887d3c7dbb732d92cc1"
        },
        {
          "url": "https://git.kernel.org/stable/c/1128022009444faf49359bd406cd665b177cb643"
        },
        {
          "url": "https://git.kernel.org/stable/c/bc30b2fe8c54694f8ae08a5b8a5d174d16d93075"
        },
        {
          "url": "https://git.kernel.org/stable/c/9ad86d377ef4a19c75a9c639964879a5b25a433b"
        }
      ],
      "title": "can: hi311x: hi3110_can_ist(): fix potential use-after-free",
      "x_generator": {
        "engine": "bippy-1.2.0"
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
    "assignerShortName": "Linux",
    "cveId": "CVE-2024-56651",
    "datePublished": "2024-12-27T15:02:50.759Z",
    "dateReserved": "2024-12-27T15:00:39.841Z",
    "dateUpdated": "2026-08-05T11:45:48.882Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "vulnerability-lookup:meta": {
    "vulnrichment": {
      "containers": "{\"adp\": [{\"title\": \"CVE Program Container\", \"references\": [{\"url\": \"https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html\"}], \"providerMetadata\": {\"orgId\": \"af854a3a-2127-422b-91ae-364da2661108\", \"shortName\": \"CVE\", \"dateUpdated\": \"2025-11-03T20:51:58.194Z\"}}, {\"title\": \"CISA ADP Vulnrichment\", \"metrics\": [{\"cvssV3_1\": {\"scope\": \"UNCHANGED\", \"version\": \"3.1\", \"baseScore\": 7.8, \"attackVector\": \"LOCAL\", \"baseSeverity\": \"HIGH\", \"vectorString\": \"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H\", \"integrityImpact\": \"HIGH\", \"userInteraction\": \"NONE\", \"attackComplexity\": \"LOW\", \"availabilityImpact\": \"HIGH\", \"privilegesRequired\": \"LOW\", \"confidentialityImpact\": \"HIGH\"}}, {\"other\": {\"type\": \"ssvc\", \"content\": {\"id\": \"CVE-2024-56651\", \"role\": \"CISA Coordinator\", \"options\": [{\"Exploitation\": \"none\"}, {\"Automatable\": \"no\"}, {\"Technical Impact\": \"total\"}], \"version\": \"2.0.3\", \"timestamp\": \"2025-02-11T15:41:42.778830Z\"}}}], \"problemTypes\": [{\"descriptions\": [{\"lang\": \"en\", \"type\": \"CWE\", \"cweId\": \"CWE-416\", \"description\": \"CWE-416 Use After Free\"}]}], \"providerMetadata\": {\"orgId\": \"134c704f-9b21-4f2e-91b3-4a467353bcc0\", \"shortName\": \"CISA-ADP\", \"dateUpdated\": \"2025-02-11T15:41:44.247Z\"}}], \"cna\": {\"title\": \"can: hi311x: hi3110_can_ist(): fix potential use-after-free\", \"metrics\": [{\"cvssV3_1\": {\"version\": \"3.1\", \"baseScore\": 8.8, \"baseSeverity\": \"HIGH\", \"vectorString\": \"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\"}, \"scenarios\": [{\"lang\": \"en\", \"value\": \"AV:A - The vulnerable path is driven by CAN bus error-state transitions (ERROR_WARNING/ERROR_PASSIVE), which any node sharing the physical CAN segment can force by injecting dominant bits or malformed/unacknowledged frames. CAN is a bounded shared bus, matching the CVSS \\\"logically adjacent topology\\\" definition rather than routable Network.\\nAC:L - The free is deterministic, not a race \\u2014 in threaded-IRQ context netif_rx() drains NET_RX_SOFTIRQ inline via local_bh_enable(), so process_backlog() consumes and frees the skb before netif_rx() returns, and the driver then unconditionally writes through the stale cf pointer. Driving TEC/REC across the error-warning/passive thresholds is entirely under the bus attacker\u0027s control and repeatable.\\nPR:N - CAN provides no authentication, addressing, or access control; a peer node needs no credentials or account on the target system to inject the error conditions that trigger the path. The code path is also not gated by any ctrlmode flag or capability check.\\nUI:N - No victim action is required \\u2014 the CAN interface being up is normal operational state for a deployed device, and the interrupt handler runs automatically on controller error signalling.\\nS:U - The use-after-free corrupts kernel slab memory within the same kernel security authority; no VM, IOMMU, or sandbox boundary is crossed.\\nC:H - The freed skb buffer is immediately recycled, so subsequent kernel data can occupy it while a socket may still hold references to the corrupted frame, and UAF-corrupted skb metadata can be leveraged to disclose adjacent kernel heap contents.\\nI:H - This is a use-after-free write: a bit-set at offset 0 plus two bytes at offsets 14/15 of the freed allocation, with values (txerr/rxerr) the bus attacker influences, repeatable on every error-state transition \\u2014 a heap-grooming-friendly write primitive into reallocated kernel objects.\\nA:H - Writing into freed and reallocated slab memory corrupts unrelated kernel structures, causing oops, slab corruption, or panic, and the trigger can be repeated indefinitely from the bus.\"}]}], \"affected\": [{\"repo\": \"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git\", \"vendor\": \"Linux\", \"product\": \"Linux\", \"versions\": [{\"status\": \"affected\", \"version\": \"a22bd630cfff496b270211745536e50e98eb3a45\", \"lessThan\": \"4ad77eb8f2e07bcfa0e28887d3c7dbb732d92cc1\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"a22bd630cfff496b270211745536e50e98eb3a45\", \"lessThan\": \"1128022009444faf49359bd406cd665b177cb643\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"a22bd630cfff496b270211745536e50e98eb3a45\", \"lessThan\": \"bc30b2fe8c54694f8ae08a5b8a5d174d16d93075\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"a22bd630cfff496b270211745536e50e98eb3a45\", \"lessThan\": \"9ad86d377ef4a19c75a9c639964879a5b25a433b\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"303733fdab728d34708014b3096dc69ebae6e531\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"410054f1cf75378a6f009359e5952a240102a1a2\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"d20bf7e76136fd4c1e47502a1f5773f2290013ed\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"22e382d47de09e865a9214cc5c9f99256e65deaa\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"dcfcd5fc999b1eb7946de1fd031bc3aaf224c5ae\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"330b0ac34beec4fef8b002549af5bc6d0b6f0836\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"f3d865a6b791abbc874739ed702ae64ad2607511\", \"versionType\": \"git\"}, {\"status\": \"affected\", \"version\": \"4.14.291\", \"lessThan\": \"4.15\", \"versionType\": \"semver\"}, {\"status\": \"affected\", \"version\": \"4.19.256\", \"lessThan\": \"4.20\", \"versionType\": \"semver\"}, {\"status\": \"affected\", \"version\": \"5.4.211\", \"lessThan\": \"5.5\", \"versionType\": \"semver\"}, {\"status\": \"affected\", \"version\": \"5.10.137\", \"lessThan\": \"5.11\", \"versionType\": \"semver\"}, {\"status\": \"affected\", \"version\": \"5.15.61\", \"lessThan\": \"5.16\", \"versionType\": \"semver\"}, {\"status\": \"affected\", \"version\": \"5.18.18\", \"lessThan\": \"5.19\", \"versionType\": \"semver\"}, {\"status\": \"affected\", \"version\": \"5.19.2\", \"lessThan\": \"5.20\", \"versionType\": \"semver\"}], \"programFiles\": [\"drivers/net/can/spi/hi311x.c\"], \"defaultStatus\": \"unaffected\"}, {\"repo\": \"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git\", \"vendor\": \"Linux\", \"product\": \"Linux\", \"versions\": [{\"status\": \"affected\", \"version\": \"6.0\"}, {\"status\": \"unaffected\", \"version\": \"0\", \"lessThan\": \"6.0\", \"versionType\": \"semver\"}, {\"status\": \"unaffected\", \"version\": \"6.1.120\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.1.*\"}, {\"status\": \"unaffected\", \"version\": \"6.6.66\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.6.*\"}, {\"status\": \"unaffected\", \"version\": \"6.12.5\", \"versionType\": \"semver\", \"lessThanOrEqual\": \"6.12.*\"}, {\"status\": \"unaffected\", \"version\": \"6.13\", \"versionType\": \"original_commit_for_fix\", \"lessThanOrEqual\": \"*\"}], \"programFiles\": [\"drivers/net/can/spi/hi311x.c\"], \"defaultStatus\": \"affected\"}], \"references\": [{\"url\": \"https://git.kernel.org/stable/c/4ad77eb8f2e07bcfa0e28887d3c7dbb732d92cc1\"}, {\"url\": \"https://git.kernel.org/stable/c/1128022009444faf49359bd406cd665b177cb643\"}, {\"url\": \"https://git.kernel.org/stable/c/bc30b2fe8c54694f8ae08a5b8a5d174d16d93075\"}, {\"url\": \"https://git.kernel.org/stable/c/9ad86d377ef4a19c75a9c639964879a5b25a433b\"}], \"x_generator\": {\"engine\": \"bippy-1.2.0\"}, \"descriptions\": [{\"lang\": \"en\", \"value\": \"In the Linux kernel, the following vulnerability has been resolved:\\n\\ncan: hi311x: hi3110_can_ist(): fix potential use-after-free\\n\\nThe commit a22bd630cfff (\\\"can: hi311x: do not report txerr and rxerr\\nduring bus-off\\\") removed the reporting of rxerr and txerr even in case\\nof correct operation (i. e. not bus-off).\\n\\nThe error count information added to the CAN frame after netif_rx() is\\na potential use after free, since there is no guarantee that the skb\\nis in the same state. It might be freed or reused.\\n\\nFix the issue by postponing the netif_rx() call in case of txerr and\\nrxerr reporting.\"}], \"cpeApplicability\": [{\"nodes\": [{\"negate\": false, \"cpeMatch\": [{\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.1.120\", \"versionStartIncluding\": \"6.0\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.6.66\", \"versionStartIncluding\": \"6.0\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.12.5\", \"versionStartIncluding\": \"6.0\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionEndExcluding\": \"6.13\", \"versionStartIncluding\": \"6.0\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"4.14.291\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"4.19.256\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"5.4.211\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"5.10.137\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"5.15.61\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"5.18.18\"}, {\"criteria\": \"cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*\", \"vulnerable\": true, \"versionStartIncluding\": \"5.19.2\"}], \"operator\": \"OR\"}]}], \"providerMetadata\": {\"orgId\": \"416baaa9-dc9f-4396-8d5f-8c081fb06d67\", \"shortName\": \"Linux\", \"dateUpdated\": \"2026-08-05T11:45:48.882Z\"}}}",
      "cveMetadata": "{\"cveId\": \"CVE-2024-56651\", \"state\": \"PUBLISHED\", \"dateUpdated\": \"2026-08-05T11:45:48.882Z\", \"dateReserved\": \"2024-12-27T15:00:39.841Z\", \"assignerOrgId\": \"416baaa9-dc9f-4396-8d5f-8c081fb06d67\", \"datePublished\": \"2024-12-27T15:02:50.759Z\", \"assignerShortName\": \"Linux\"}",
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }
  }
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…