CVE-2024-26677: rxrpc: Fix delayed ACKs to not set the reference serial number
In the Linux kernel, the following vulnerability has been resolved:
rxrpc: Fix delayed ACKs to not set the reference serial number
Fix the construction of delayed ACKs to not set the reference serial number as they can't be used as an RTT reference.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-26677?
CVE-2024-26677 has not been assigned a CVSS score yet, but it is important to assess its impact on your systems.
How do I fix CVE-2024-26677?
To fix CVE-2024-26677, update your Linux kernel to version 6.12.10-1 or 6.12.11-1 if you are running affected versions.
Which versions of Linux are affected by CVE-2024-26677?
CVE-2024-26677 affects Linux kernel versions up to 5.10.226-1 and 6.1.123-1.
What component of the Linux kernel is affected by CVE-2024-26677?
CVE-2024-26677 specifically affects the rxrpc component related to delayed ACKs.
Is CVE-2024-26677 a remote code execution vulnerability?
CVE-2024-26677 does not indicate a remote code execution vulnerability, but rather addresses issues with the functionality of delayed ACKs.