CVE-2024-46834

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Sep 27, 2024
Updated: Oct 9, 2024

Summary

CVE-2024-46834 is a vulnerability affecting the Linux kernel that could lead to crashes if the indirection table containing channels exceeds valid bounds. This issue is due to the max channel check getting skipped if the driver cannot fetch the indirection table or allocate memory. Although rare, these conditions could occur, and the vulnerability should be addressed by failing the channel change to ensure system safety. This issue has been resolved by commit 0d1b7d6c9274, which addresses crashes related to reducing ring count with active RSS contexts.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share