CVE-2024-23849

5.5MEDIUM

In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel through 6.7.1, there is an off-by-one error for an RDS_MSG_RX_DGRAM_TRACE_MAX comparison, resulting in out-of-bounds access.

Veröffentlicht: 1/23/2024Aktualisiert: 11/4/2025

Beschreibung

In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel through 6.7.1, there is an off-by-one error for an RDS_MSG_RX_DGRAM_TRACE_MAX comparison, resulting in out-of-bounds access.

KI-AnalyseKI-gestützt

Betroffene Produkte

linuxlinux_kernel

Referenzen