← Back

CVE-2024-1151

nvd nist
Published: Feb 11, 2024Modified: Nov 21, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel. The flaw occurs when a recursive operation of code push recursively calls into the code block. The OVS module does not validate the stack depth, pushing too many frames and causing a stack overflow. As a result, this can lead to a crash or other related issues.

Affected (11)

Show all products
1 product
Debian Linux
1 product
Fedora
1 product
Enterprise Linux
1 product
Linux Kernel
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.0
Fedoraproject
Version 38
Version 39
Redhat
Version 8.0
Version 9.0
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Up to 6.7.8
Version 6.8
Version 6.8 rc1
Version 6.8 rc2
Version 6.8 rc3
Version 6.8 rc4

References (14)

Source: secalert@redhat.com
Issue Tracking
Source: secalert@redhat.com
Issue Tracking
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking
Source: af854a3a-2127-422b-91ae-364da2661108
Issue Tracking
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch

Timeline

No history available yet.