跳转到帖子

Ubuntu: (Multiple Advisories) (CVE-2024-53057): Linux kernel vulnerability

recommended_posts

发布于
  • Members

Ubuntu: (Multiple Advisories) (CVE-2024-53057): Linux kernel vulnerability

Severity
7
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
11/19/2024
Created
12/18/2024
Added
12/17/2024
Modified
01/30/2025

Description

In the Linux kernel, the following vulnerability has been resolved: net/sched: stop qdisc_tree_reduce_backlog on TC_H_ROOT In qdisc_tree_reduce_backlog, Qdiscs with major handle ffff: are assumed to be either root or ingress. This assumption is bogus since it's valid to create egress qdiscs with major handle ffff: Budimir Markovic found that for qdiscs like DRR that maintain an active class list, it will cause a UAF with a dangling class pointer. In 066a3b5b2346, the concern was to avoid iterating over the ingress qdisc since its parent is itself. The proper fix is to stop when parent TC_H_ROOT is reached because the only way to retrieve ingress is when a hierarchy which does not contain a ffff: major handle call into qdisc_lookup with TC_H_MAJ(TC_H_ROOT). In the scenario where major ffff: is an egress qdisc in any of the tree levels, the updates will also propagate to TC_H_ROOT, which then the iteration must stop. net/sched/sch_api.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-)

Solution(s)

  • ubuntu-upgrade-linux-image-3-13-0-201-generic
  • ubuntu-upgrade-linux-image-3-13-0-201-lowlatency
  • ubuntu-upgrade-linux-image-4-15-0-1138-oracle
  • ubuntu-upgrade-linux-image-4-15-0-1159-kvm
  • ubuntu-upgrade-linux-image-4-15-0-1169-gcp
  • ubuntu-upgrade-linux-image-4-15-0-1176-aws
  • ubuntu-upgrade-linux-image-4-15-0-1184-azure
  • ubuntu-upgrade-linux-image-4-15-0-232-generic
  • ubuntu-upgrade-linux-image-4-15-0-232-lowlatency
  • ubuntu-upgrade-linux-image-4-4-0-1139-aws
  • ubuntu-upgrade-linux-image-4-4-0-1140-kvm
  • ubuntu-upgrade-linux-image-4-4-0-1177-aws
  • ubuntu-upgrade-linux-image-4-4-0-262-generic
  • ubuntu-upgrade-linux-image-4-4-0-262-lowlatency
  • ubuntu-upgrade-linux-image-5-15-0-1041-xilinx-zynqmp
  • ubuntu-upgrade-linux-image-5-15-0-1057-gkeop
  • ubuntu-upgrade-linux-image-5-15-0-1067-ibm
  • ubuntu-upgrade-linux-image-5-15-0-1070-nvidia
  • ubuntu-upgrade-linux-image-5-15-0-1070-nvidia-lowlatency
  • ubuntu-upgrade-linux-image-5-15-0-1070-raspi
  • ubuntu-upgrade-linux-image-5-15-0-1071-intel-iotg
  • ubuntu-upgrade-linux-image-5-15-0-1071-kvm
  • ubuntu-upgrade-linux-image-5-15-0-1072-gke
  • ubuntu-upgrade-linux-image-5-15-0-1072-oracle
  • ubuntu-upgrade-linux-image-5-15-0-1073-oracle
  • ubuntu-upgrade-linux-image-5-15-0-1074-gcp
  • ubuntu-upgrade-linux-image-5-15-0-1075-aws
  • ubuntu-upgrade-linux-image-5-15-0-1076-aws
  • ubuntu-upgrade-linux-image-5-15-0-1078-azure
  • ubuntu-upgrade-linux-image-5-15-0-128-lowlatency
  • ubuntu-upgrade-linux-image-5-15-0-128-lowlatency-64k
  • ubuntu-upgrade-linux-image-5-15-0-130-generic
  • ubuntu-upgrade-linux-image-5-15-0-130-generic-64k
  • ubuntu-upgrade-linux-image-5-15-0-130-generic-lpae
  • ubuntu-upgrade-linux-image-5-4-0-1056-xilinx-zynqmp
  • ubuntu-upgrade-linux-image-5-4-0-1084-ibm
  • ubuntu-upgrade-linux-image-5-4-0-1097-bluefield
  • ubuntu-upgrade-linux-image-5-4-0-1121-raspi
  • ubuntu-upgrade-linux-image-5-4-0-1125-kvm
  • ubuntu-upgrade-linux-image-5-4-0-1136-oracle
  • ubuntu-upgrade-linux-image-5-4-0-1137-aws
  • ubuntu-upgrade-linux-image-5-4-0-1141-gcp
  • ubuntu-upgrade-linux-image-5-4-0-1142-azure
  • ubuntu-upgrade-linux-image-5-4-0-204-generic
  • ubuntu-upgrade-linux-image-5-4-0-204-generic-lpae
  • ubuntu-upgrade-linux-image-5-4-0-204-lowlatency
  • ubuntu-upgrade-linux-image-6-11-0-1003-realtime
  • ubuntu-upgrade-linux-image-6-11-0-1006-gcp
  • ubuntu-upgrade-linux-image-6-11-0-1006-raspi
  • ubuntu-upgrade-linux-image-6-11-0-1007-aws
  • ubuntu-upgrade-linux-image-6-11-0-1007-azure
  • ubuntu-upgrade-linux-image-6-11-0-1007-azure-fde
  • ubuntu-upgrade-linux-image-6-11-0-1007-lowlatency
  • ubuntu-upgrade-linux-image-6-11-0-1007-lowlatency-64k
  • ubuntu-upgrade-linux-image-6-11-0-1009-oracle
  • ubuntu-upgrade-linux-image-6-11-0-1009-oracle-64k
  • ubuntu-upgrade-linux-image-6-11-0-1010-oem
  • ubuntu-upgrade-linux-image-6-11-0-13-generic
  • ubuntu-upgrade-linux-image-6-11-0-13-generic-64k
  • ubuntu-upgrade-linux-image-6-8-0-1003-gkeop
  • ubuntu-upgrade-linux-image-6-8-0-1016-gke
  • ubuntu-upgrade-linux-image-6-8-0-1017-raspi
  • ubuntu-upgrade-linux-image-6-8-0-1018-ibm
  • ubuntu-upgrade-linux-image-6-8-0-1018-oracle
  • ubuntu-upgrade-linux-image-6-8-0-1018-oracle-64k
  • ubuntu-upgrade-linux-image-6-8-0-1019-oem
  • ubuntu-upgrade-linux-image-6-8-0-1020-azure
  • ubuntu-upgrade-linux-image-6-8-0-1020-azure-fde
  • ubuntu-upgrade-linux-image-6-8-0-1020-gcp
  • ubuntu-upgrade-linux-image-6-8-0-1020-nvidia
  • ubuntu-upgrade-linux-image-6-8-0-1020-nvidia-64k
  • ubuntu-upgrade-linux-image-6-8-0-1020-nvidia-lowlatency
  • ubuntu-upgrade-linux-image-6-8-0-1020-nvidia-lowlatency-64k
  • ubuntu-upgrade-linux-image-6-8-0-1021-aws
  • ubuntu-upgrade-linux-image-6-8-0-51-generic
  • ubuntu-upgrade-linux-image-6-8-0-51-generic-64k
  • ubuntu-upgrade-linux-image-6-8-0-51-lowlatency
  • ubuntu-upgrade-linux-image-6-8-0-51-lowlatency-64k
  • ubuntu-upgrade-linux-image-aws
  • ubuntu-upgrade-linux-image-aws-hwe
  • ubuntu-upgrade-linux-image-aws-lts-18-04
  • ubuntu-upgrade-linux-image-aws-lts-20-04
  • ubuntu-upgrade-linux-image-aws-lts-22-04
  • ubuntu-upgrade-linux-image-azure
  • ubuntu-upgrade-linux-image-azure-cvm
  • ubuntu-upgrade-linux-image-azure-fde
  • ubuntu-upgrade-linux-image-azure-lts-18-04
  • ubuntu-upgrade-linux-image-azure-lts-20-04
  • ubuntu-upgrade-linux-image-azure-lts-22-04
  • ubuntu-upgrade-linux-image-bluefield
  • ubuntu-upgrade-linux-image-gcp
  • ubuntu-upgrade-linux-image-gcp-lts-18-04
  • ubuntu-upgrade-linux-image-gcp-lts-20-04
  • ubuntu-upgrade-linux-image-gcp-lts-22-04
  • ubuntu-upgrade-linux-image-generic
  • ubuntu-upgrade-linux-image-generic-64k
  • ubuntu-upgrade-linux-image-generic-64k-hwe-20-04
  • ubuntu-upgrade-linux-image-generic-64k-hwe-22-04
  • ubuntu-upgrade-linux-image-generic-64k-hwe-24-04
  • ubuntu-upgrade-linux-image-generic-hwe-16-04
  • ubuntu-upgrade-linux-image-generic-hwe-18-04
  • ubuntu-upgrade-linux-image-generic-hwe-20-04
  • ubuntu-upgrade-linux-image-generic-hwe-22-04
  • ubuntu-upgrade-linux-image-generic-hwe-24-04
  • ubuntu-upgrade-linux-image-generic-lpae
  • ubuntu-upgrade-linux-image-generic-lpae-hwe-20-04
  • ubuntu-upgrade-linux-image-generic-lts-trusty
  • ubuntu-upgrade-linux-image-generic-lts-xenial
  • ubuntu-upgrade-linux-image-gke
  • ubuntu-upgrade-linux-image-gke-5-15
  • ubuntu-upgrade-linux-image-gkeop
  • ubuntu-upgrade-linux-image-gkeop-5-15
  • ubuntu-upgrade-linux-image-gkeop-6-8
  • ubuntu-upgrade-linux-image-ibm
  • ubuntu-upgrade-linux-image-ibm-classic
  • ubuntu-upgrade-linux-image-ibm-lts-20-04
  • ubuntu-upgrade-linux-image-ibm-lts-24-04
  • ubuntu-upgrade-linux-image-intel
  • ubuntu-upgrade-linux-image-intel-iotg
  • ubuntu-upgrade-linux-image-kvm
  • ubuntu-upgrade-linux-image-lowlatency
  • ubuntu-upgrade-linux-image-lowlatency-64k
  • ubuntu-upgrade-linux-image-lowlatency-64k-hwe-20-04
  • ubuntu-upgrade-linux-image-lowlatency-64k-hwe-22-04
  • ubuntu-upgrade-linux-image-lowlatency-64k-hwe-24-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-16-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-18-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-20-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-22-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-24-04
  • ubuntu-upgrade-linux-image-lowlatency-lts-xenial
  • ubuntu-upgrade-linux-image-nvidia
  • ubuntu-upgrade-linux-image-nvidia-6-8
  • ubuntu-upgrade-linux-image-nvidia-64k
  • ubuntu-upgrade-linux-image-nvidia-64k-6-8
  • ubuntu-upgrade-linux-image-nvidia-64k-hwe-22-04
  • ubuntu-upgrade-linux-image-nvidia-hwe-22-04
  • ubuntu-upgrade-linux-image-nvidia-lowlatency
  • ubuntu-upgrade-linux-image-nvidia-lowlatency-64k
  • ubuntu-upgrade-linux-image-oem
  • ubuntu-upgrade-linux-image-oem-20-04
  • ubuntu-upgrade-linux-image-oem-20-04b
  • ubuntu-upgrade-linux-image-oem-20-04c
  • ubuntu-upgrade-linux-image-oem-20-04d
  • ubuntu-upgrade-linux-image-oem-22-04
  • ubuntu-upgrade-linux-image-oem-22-04a
  • ubuntu-upgrade-linux-image-oem-22-04b
  • ubuntu-upgrade-linux-image-oem-22-04c
  • ubuntu-upgrade-linux-image-oem-22-04d
  • ubuntu-upgrade-linux-image-oem-24-04
  • ubuntu-upgrade-linux-image-oem-24-04a
  • ubuntu-upgrade-linux-image-oem-24-04b
  • ubuntu-upgrade-linux-image-oem-osp1
  • ubuntu-upgrade-linux-image-oracle
  • ubuntu-upgrade-linux-image-oracle-64k
  • ubuntu-upgrade-linux-image-oracle-edge
  • ubuntu-upgrade-linux-image-oracle-lts-18-04
  • ubuntu-upgrade-linux-image-oracle-lts-20-04
  • ubuntu-upgrade-linux-image-oracle-lts-22-04
  • ubuntu-upgrade-linux-image-raspi
  • ubuntu-upgrade-linux-image-raspi-hwe-18-04
  • ubuntu-upgrade-linux-image-raspi-nolpae
  • ubuntu-upgrade-linux-image-raspi2
  • ubuntu-upgrade-linux-image-server
  • ubuntu-upgrade-linux-image-snapdragon-hwe-18-04
  • ubuntu-upgrade-linux-image-virtual
  • ubuntu-upgrade-linux-image-virtual-hwe-16-04
  • ubuntu-upgrade-linux-image-virtual-hwe-18-04
  • ubuntu-upgrade-linux-image-virtual-hwe-20-04
  • ubuntu-upgrade-linux-image-virtual-hwe-22-04
  • ubuntu-upgrade-linux-image-virtual-hwe-24-04
  • ubuntu-upgrade-linux-image-virtual-lts-xenial
  • ubuntu-upgrade-linux-image-xilinx-zynqmp

References

  • https://attackerkb.com/topics/cve-2024-53057
  • CVE - 2024-53057
  • USN-7163-1
  • USN-7167-1
  • USN-7167-2
  • USN-7169-1
  • USN-7169-2
  • USN-7169-3
  • USN-7169-4
  • USN-7169-5
  • USN-7170-1
  • USN-7173-1
  • USN-7173-2
  • USN-7173-3
  • USN-7179-1
  • USN-7179-2
  • USN-7179-3
  • USN-7179-4
  • USN-7183-1
  • USN-7184-1
  • USN-7185-1
  • USN-7185-2
  • USN-7186-1
  • USN-7186-2
  • USN-7194-1
  • USN-7195-1
  • USN-7195-2
  • USN-7196-1
View more
  • 查看数 694
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…