跳转到帖子

Ubuntu: (CVE-2024-57947): linux-bluefield vulnerability

recommended_posts

发布于
  • Members

Ubuntu: (CVE-2024-57947): linux-bluefield vulnerability

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
01/23/2025
Created
02/12/2025
Added
02/11/2025
Modified
02/11/2025

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has to be inited to all-ones, but it must restrict it to the size of the first field, not the total field size. After each round in the map search step, the result and the fill map are swapped, so if we have a set where f->bsize of the first element is smaller than m->bsize_max, those one-bits are leaked into future rounds result map. This makes pipapo find an incorrect matching results for sets where first field size is not the largest. Followup patch adds a test case to nft_concat_range.sh selftest script. Thanks to Stefano Brivio for pointing out that we need to zero out the remainder explicitly, only correcting memset() argument isn't enough.

Solution(s)

  • ubuntu-upgrade-linux-aws-fips
  • ubuntu-upgrade-linux-azure-fips
  • ubuntu-upgrade-linux-bluefield
  • ubuntu-upgrade-linux-fips
  • ubuntu-upgrade-linux-gcp-fips
  • ubuntu-upgrade-linux-intel-iot-realtime
  • ubuntu-upgrade-linux-raspi-realtime
  • ubuntu-upgrade-linux-realtime

References

  • https://attackerkb.com/topics/cve-2024-57947
  • CVE - 2024-57947
  • https://git.kernel.org/linus/791a615b7ad2258c560f91852be54b0480837c93
  • https://git.kernel.org/stable/c/69b6a67f7052905e928d75a0c5871de50e686986
  • https://git.kernel.org/stable/c/791a615b7ad2258c560f91852be54b0480837c93
  • https://git.kernel.org/stable/c/8058c88ac0df21239daee54b5934d5c80ca9685f
  • https://git.kernel.org/stable/c/957a4d1c4c5849e4515c9fb4db21bf85318103dc
  • https://git.kernel.org/stable/c/9625c46ce6fd4f922595a4b32b1de5066d70464f
  • https://www.cve.org/CVERecord?id=CVE-2024-57947
View more
  • 查看数 705
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…