IT

Tracker / CVE-2024-36918

CVE-2024-36918

High 7.8

In the Linux kernel, the following vulnerability has been resolved: bpf: Check bloom filter map value size This patch adds a missing check to bloom filter creating, rejecting values above KMALLOC_MAX_SIZE. This brings the bloom map in line with many other map types. The lack of this protection can cause kernel crashes for value sizes that overflow int's. Such a crash was caught by syzkaller. The next patch adds more guard-rails at a lower level.

Affected products and versions

linux linux_kernel
linux linux_kernel · 5.16 → 6.1.91
linux linux_kernel · 6.2 → 6.6.31
linux linux_kernel · 6.7 → 6.8.10

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References