First published: Mon May 20 2024(Updated: )
In the Linux kernel, the following vulnerability has been resolved: net: ena: Fix incorrect descriptor free behavior ENA has two types of TX queues: - queues which only process TX packets arriving from the network stack - queues which only process TX packets forwarded to it by XDP_REDIRECT or XDP_TX instructions The ena_free_tx_bufs() cycles through all descriptors in a TX queue and unmaps + frees every descriptor that hasn't been acknowledged yet by the device (uncompleted TX transactions). The function assumes that the processed TX queue is necessarily from the first category listed above and ends up using napi_consume_skb() for descriptors belonging to an XDP specific queue. This patch solves a bug in which, in case of a VF reset, the descriptors aren't freed correctly, leading to crashes.
Credit: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <5.10.216 | 5.10.216 |
redhat/kernel | <5.15.156 | 5.15.156 |
redhat/kernel | <6.1.87 | 6.1.87 |
redhat/kernel | <6.6.28 | 6.6.28 |
redhat/kernel | <6.8.7 | 6.8.7 |
redhat/kernel | <6.9 | 6.9 |
IBM Security Verify Governance - Identity Manager | <=ISVG 10.0.2 | |
IBM Security Verify Governance, Identity Manager Software Stack | <=ISVG 10.0.2 | |
IBM Security Verify Governance, Identity Manager Virtual Appliance | <=ISVG 10.0.2 | |
IBM Security Verify Governance Identity Manager Container | <=ISVG 10.0.2 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.129-1 6.1.128-1 6.12.21-1 6.12.22-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-35958 is considered a medium-severity vulnerability in the Linux kernel.
To fix CVE-2024-35958, update the Linux kernel to versions 5.10.216, 5.15.156, 6.1.87, 6.6.28, 6.8.7, or 6.9 as applicable.
CVE-2024-35958 affects systems running specific versions of the Linux kernel, including those from Red Hat and Debian.
Yes, CVE-2024-35958 is related to the ENA driver and involves incorrect descriptor free behavior.
If you cannot update, consider applying any available mitigations or configurations to limit exposure until a patch can be applied.