PT-2025-8783 · Linux+7 · Linux Kernel+7

·

CVE-2024-57996

·

Publicado

2024-12-06

·

Atualizado

2026-08-23

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Nome do Software Vulnerável e Versões Afetadas Versões do kernel Linux anteriores à 5.10.0
Descrição Uma vulnerabilidade foi identificada no kernel Linux, especificamente no módulo net sched, onde a implementação sch sfq não funciona corretamente com um limite de 1 pacote. Este problema pode causar um erro de índice de array fora dos limites no array sfq head, levando a uma falha. A vulnerabilidade pode ser acionada pelo envio de dois pacotes em um cenário específico, causando um underflow no qdisc qlen e resultando em um acesso fora dos limites.
Recomendações Para versões do kernel Linux anteriores à 5.10.0, aplique o patch que adiciona uma verificação para impedir que o limite seja definido como 1, pois isso prevenirá o erro de índice de array fora dos limites e a falha subsequente. Como medida temporária, considere desabilitar o qdisc sfq até que um patch esteja disponível.

Exploit

Correção

DoS

LPE

Improper Validation of Array Index

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2025-12647
AZL-57993
BDU:2025-11898
CVE-2024-57996
DLA-4102-1
DLA-4327-1
OESA-2025-1408
OESA-2025-1446
OESA-2025-1450
OPENSUSE-SU-2025_1177-1
OPENSUSE-SU-2025_1178-1
OPENSUSE-SU-2025_1180-1
OPENSUSE-SU-2025_1263-1
SUSE-SU-2025:01839-1
SUSE-SU-2025:01840-1
SUSE-SU-2025:01843-1
SUSE-SU-2025:01844-1
SUSE-SU-2025:01849-1
SUSE-SU-2025:01851-1
SUSE-SU-2025:01853-1
SUSE-SU-2025:01868-1
SUSE-SU-2025:01869-1
SUSE-SU-2025:01873-1
SUSE-SU-2025:01875-1
SUSE-SU-2025:01892-1
SUSE-SU-2025:01893-1
SUSE-SU-2025:01894-1
SUSE-SU-2025:01899-1
SUSE-SU-2025:01901-1
SUSE-SU-2025:01906-1
SUSE-SU-2025:01907-1
SUSE-SU-2025:01908-1
SUSE-SU-2025:01919-1
SUSE-SU-2025:01922-1
SUSE-SU-2025:01927-1
SUSE-SU-2025:01928-1
SUSE-SU-2025:01929-1
SUSE-SU-2025:01930-1
SUSE-SU-2025:01932-1
SUSE-SU-2025:01935-1
SUSE-SU-2025:01944-1
SUSE-SU-2025:01948-1
SUSE-SU-2025:01949-1
SUSE-SU-2025:01950-1
SUSE-SU-2025:01956-1
SUSE-SU-2025:01957-1
SUSE-SU-2025:01958-1
SUSE-SU-2025:0983-1
SUSE-SU-2025:1027-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1177-1
SUSE-SU-2025:1178-1
SUSE-SU-2025:1180-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1194-1
SUSE-SU-2025:1241-1
SUSE-SU-2025:1263-1
SUSE-SU-2025:1293-1
SUSE-SU-2025:20190-1
SUSE-SU-2025:20192-1
SUSE-SU-2025:20260-1
SUSE-SU-2025:20270-1
SUSE-SU-2025:20381-1
SUSE-SU-2025:20382-1
SUSE-SU-2025:20383-1
SUSE-SU-2025:20384-1
SUSE-SU-2025:20386-1
SUSE-SU-2025:20387-1
SUSE-SU-2025:20388-1
SUSE-SU-2025:20389-1
SUSE-SU-2025:20397-1
SUSE-SU-2025:20398-1
SUSE-SU-2025:20399-1
SUSE-SU-2025:20400-1
SUSE-SU-2025:20401-1
SUSE-SU-2025:20402-1
SUSE-SU-2025:4123-1
SUSE-SU-2025_0983-1
SUSE-SU-2025_1027-1
SUSE-SU-2025_1177-1
SUSE-SU-2025_1178-1
SUSE-SU-2025_1180-1
SUSE-SU-2025_1241-1
SUSE-SU-2025_1263-1
SUSE-SU-2025_1293-1
SUSE-SU-2026:0385-1
USN-7521-1
USN-7521-2
USN-7521-3
USN-7651-1
USN-7651-2
USN-7651-3
USN-7651-4
USN-7651-5
USN-7651-6
USN-7652-1
USN-7653-1
USN-7725-1
USN-7725-2
USN-7725-3
USN-7726-1
USN-7726-2
USN-7726-3
USN-7726-4
USN-7726-5
USN-7727-1
USN-7727-2
USN-7727-3
USN-7754-1
USN-7754-2
USN-7755-1
USN-7755-2
USN-7755-3
USN-7776-1
USN-7779-1
USN-7802-1
USN-7809-1
USN-7819-1
USN-7819-2
USN-7820-1
USN-7832-1
USN-7875-1

Produtos afetados

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu