CVE-2024-56783

5.5MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level cgroup maximum depth is INT_MAX by default, there is a cgroup t

发布于: 1/8/2025更新于: 11/3/2025

描述

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level cgroup maximum depth is INT_MAX by default, there is a cgroup toggle to restrict this maximum depth to a more reasonable value not to harm performance. Remove unnecessary WARN_ON_ONCE which is reachable from userspace.

AI分析AI驱动

受影响产品

linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
6.13

参考资料