Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2024-26583— tls: fix race between async notify and socket close

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于 tls 模块在异步通知和套接字关闭两个操作之间存在竞争问题。

CVSS 9.8 · Critical EPSS 0.55% · P44

Possible ATT&CK Techniques 1 AI

T1068 · Exploitation for Privilege Escalation

Affected Version Matrix 16

VendorProduct Version RangeStatus
Linux Linux 0cada33241d9de205522e3858b18e506ca5cce2c< f17d21ea73918ace8afb9c2d8e734dbf71c2c9d7 affected
0cada33241d9de205522e3858b18e506ca5cce2c< 7a3ca06d04d589deec81f56229a9a9d62352ce01 affected
0cada33241d9de205522e3858b18e506ca5cce2c< 86dc27ee36f558fe223dbdfbfcb6856247356f4a affected
0cada33241d9de205522e3858b18e506ca5cce2c< 6209319b2efdd8524691187ee99c40637558fa33 affected
0cada33241d9de205522e3858b18e506ca5cce2c< aec7961916f3f9e88766e2688992da6980f11b8d affected
cf4cc95a15f599560c7abd89095a7973a4b9cec3 affected
9b81d43da15e56ed89f083f326561acdcaf549ce affected
5.4.44< 5.5 affected
… +8 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2024-26583

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
tls: fix race between async notify and socket close
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: tls: fix race between async notify and socket close The submitting thread (one which called recvmsg/sendmsg) may exit as soon as the async crypto handler calls complete() so any code past that point risks touching already freed data. Try to avoid the locking and extra flags altogether. Have the main thread hold an extra reference, this way we can depend solely on the atomic ref counter for synchronization. Don't futz with reiniting the completion, either, we are now tightly controlling when completion fires.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel 存在安全漏洞,该漏洞源于 tls 模块在异步通知和套接字关闭两个操作之间存在竞争问题。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 0cada33241d9de205522e3858b18e506ca5cce2c ~ f17d21ea73918ace8afb9c2d8e734dbf71c2c9d7 -
Linux Linux 5.7 -

II. Public POCs for CVE-2024-26583

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-26583

请登录查看更多情报信息。

Mailing List Discussions for CVE-2024-26583 (2)

Other References for CVE-2024-26583 (5)

Same Patch Batch · Linux · 2024-02-21 · 7 CVEs total

CVE-2024-26585 9.8 CRITICAL tls: fix race between tx work scheduling and socket close
CVE-2024-26584 9.8 CRITICAL net: tls: handle backlogging of crypto requests
CVE-2024-26582 9.8 CRITICAL net: tls: fix use-after-free with partial reads and async decrypt
CVE-2023-52440 9.8 CRITICAL ksmbd: fix slub overflow in ksmbd_decode_ntlmssp_auth_blob()
CVE-2023-52442 9.1 CRITICAL ksmbd: validate session id and tree id in compound request
CVE-2023-52441 9.1 CRITICAL ksmbd: fix out of bounds in init_smb2_rsp_hdr()

IV. Related Vulnerabilities

V. Comments for CVE-2024-26583

No comments yet


Leave a comment