CVE-2024-53151: svcrdma: Address an integer overflow
In the Linux kernel, the following vulnerability has been resolved:
svcrdma: Address an integer overflow
Dan Carpenter reports: > Commit 78147ca8b4a9 ("svcrdma: Add a "parsed chunk list" data > structure") from Jun 22, 2020 (linux-next), leads to the following > Smatch static checker warning: > > net/sunrpc/xprtrdma/svcrdmarecvfrom.c:498 xdrcheckwritechunk() > warn: potential user controlled sizeof overflow 'segcount 4 4' > > net/sunrpc/xprtrdma/svcrdmarecvfrom.c > 488 static bool xdrcheckwritechunk(struct svcrdmarecvctxt rctxt) > 489 { > 490 u32 segcount; > 491 be32 p; > 492 > 493 if (xdrstreamdecodeu32(&rctxt->rcstream, &segcount)) > ^^^^^^^^ > > 494 return false; > 495 > 496 / A bogus segcount causes this buffer overflow check to fail. / > 497 p = xdrinlinedecode(&rctxt->rcstream, > --> 498 segcount rpcrdmasegmentmaxsz sizeof(p)); > > > segcount is an untrusted u32. On 32bit systems anything >= SIZEMAX / 16 will > have an integer overflow and some those values will be accepted by > xdrinlinedecode().
Other sources
This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.
— Launchpad
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.22-1Fixed in 6.12.25-1 - Upgrade
Upgrade
debian/linux-6.1to a version that resolves this vulnerability.Fixed in 6.1.129-1~deb11u1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch 78147ca8b4a9
Event History
Frequently Asked Questions
What is the severity of CVE-2024-53151?
CVE-2024-53151 has not been assigned a specific CVSS score but addresses a potential integer overflow vulnerability in the Linux kernel.
Which versions of the Linux kernel are affected by CVE-2024-53151?
CVE-2024-53151 affects Linux kernel versions from 5.11 to 5.15.174, 5.16 to 6.1.120, 6.2 to 6.6.64, 6.7 to 6.11.11, and 6.12 to 6.12.2.
How do I fix CVE-2024-53151?
To fix CVE-2024-53151, upgrade to a patched version of the Linux kernel that addresses the integer overflow vulnerability.
What type of vulnerability is CVE-2024-53151?
CVE-2024-53151 is classified as an integer overflow vulnerability in the svcrdma component of the Linux kernel.
Who reported CVE-2024-53151?
CVE-2024-53151 was reported by Dan Carpenter.