CVE-2024-27026

MEDIUM

Linux Kernel 6.6-6.6.22, 6.7-6.7.10, 6.8-6.8.1 - Denial of Service via vmxnet3 XDP Tailroom Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: vmxnet3: Fix missing reserved tailroom Use rbi->len instead of rcd->len for non-dataring packet. Found issue: XDP_WARN: xdp_update_frame_from_buff(line:278): Driver BUG: missing reserved tailroom WARNING: CPU: 0 PID: 0 at net/core/xdp.c:586 xdp_warn+0xf/0x20 CPU: 0 PID: 0 Comm: swapper/0 Tainted: G W O 6.5.1 #1 RIP: 0010:xdp_warn+0xf/0x20 ... ? xdp_warn+0xf/0x20 xdp_do_redirect+0x15f/0x1c0 vmxnet3_run_xdp+0x17a/0x400 [vmxnet3] vmxnet3_process_xdp+0xe4/0x760 [vmxnet3] ? vmxnet3_tq_tx_complete.isra.0+0x21e/0x2c0 [vmxnet3] vmxnet3_rq_rx_complete+0x7ad/0x1120 [vmxnet3] vmxnet3_poll_rx_only+0x2d/0xa0 [vmxnet3] __napi_poll+0x20/0x180 net_rx_action+0x177/0x390

Scores

CVSS v3 5.5
EPSS 0.0027
EPSS Percentile 18.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (14)
linux/Kernel 6.6.0 - 6.6.23linux
linux/Kernel 6.7.0 - 6.7.11linux
linux/Kernel 6.8.0 - 6.8.2linux
Linux/Linux < 6.6
Linux/Linux 54f00cce11786742bd11e5e68c3bf85e6dc048c9 - 7c8505ecc2d15473d679b8e06335434b84fffe86
Linux/Linux 54f00cce11786742bd11e5e68c3bf85e6dc048c9 - 91d017d19d5a9ad153e2dc23ed3c0e2e79ef5262
Linux/Linux 54f00cce11786742bd11e5e68c3bf85e6dc048c9 - aba8659caf88017507419feea06069f529329ea6
Linux/Linux 54f00cce11786742bd11e5e68c3bf85e6dc048c9 - e127ce7699c1e05279ee5ee61f00893e7bfa9671
Linux/Linux 6.6
Linux/Linux 6.6.23 - 6.6.*
... and 4 more
Published May 01, 2024
Tracked Since Feb 18, 2026