CVE-2024-49995: tipc: guard against string buffer overrun

Published Oct 21, 2024
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

tipc: guard against string buffer overrun

Smatch reports that copying medianame and ifname to nameparts may overwrite the destination.

.../bearer.c:166 bearernamevalidate() error: strcpy() 'medianame' too large for 'nameparts->medianame' (32 vs 16) .../bearer.c:167 bearernamevalidate() error: strcpy() 'ifname' too large for 'nameparts->ifname' (1010102 vs 16)

This does seem to be the case so guard against this possibility by using strscpy() and failing if truncation occurs.

Introduced by commit b97bf3fd8f6a ("[TIPC] Initial merge")

Compile tested only.

Other sources

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

NVD

This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.

Launchpad

Affected Software

6 affected componentsFixes available
Linux Linux kernel
Microsoft cbl2 kernel 5.15.167.1-2
Microsoft azl3 kernel 6.6.51.1-5
Microsoft cbl2 kernel 5.15.167.1-2
Microsoft azl3 kernel 6.6.57.1-2
Microsoft cbl2 kernel 5.15.173.1-1

Event History

Oct 21, 2024
CVE Published
via MITRE·06:02 PM
Rejected
via MITRE·06:02 PM
Data Sourced
via NVD·06:15 PM
Description
Data Sourced
via Red Hat·07:02 PM
DescriptionSeverityAffected Software
Nov 12, 2024
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
SeverityAffected Software
Updated
via Microsoft·08:00 AM
DescriptionSeverity
Feb 12, 2025
Data Sourced
via Launchpad·05:17 AM
Description
Apr 24, 2025
Rejected
via MITRE·01:44 PM
Apr 25, 2025
Data Sourced
via Debian·06:30 AM
DescriptionAffected Software
May 7, 2025
Data Sourced
via Ubuntu·06:32 AM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2024-49995?

CVE-2024-49995 is a vulnerability in the Linux kernel that can lead to a string buffer overrun, potentially causing system instability.

2

How do I fix CVE-2024-49995?

To fix CVE-2024-49995, update your Linux kernel to versions 6.1.123-1, 6.1.128-1, 6.12.12-1, or 6.12.15-1, or to an unaffected version outside of the specified vulnerable range.

3

Which versions of the Linux kernel are affected by CVE-2024-49995?

The affected versions include Linux kernel versions from 5.10.224 up to 6.11.3, excluding patched releases.

4

What types of systems are impacted by CVE-2024-49995?

CVE-2024-49995 impacts any system running the vulnerable versions of the Linux kernel.

5

What is the nature of the vulnerability indicated by CVE-2024-49995?

CVE-2024-49995 involves a flaw that can result in a string buffer overrun during the copying of certain media and interface names, potentially leading to denial of service.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203