CVE Database
/

CVE-2024-27417

Back to search

CVE-2024-27417

Published: May 17, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix potential "struct net" leak in inet6_rtm_getaddr() It seems that if userspace provides a correct IFA_TARGET_NETNSID value but no IFA_ADDRESS and IFA_LOCAL attributes, inet6_rtm_getaddr() returns -EINVAL with an elevated "struct net" refcount.

VendorProductVersions

Linux

Linux

affected
6ecf4c37eb3e89b0832c9616089a5cdca3747da7 - < 9d4ffb5b9d879a75e4f7460e8b10e756b4dfb132
affected
6ecf4c37eb3e89b0832c9616089a5cdca3747da7 - < 810fa7d5e5202fcfb22720304b755f1bdfd4c174
affected
6ecf4c37eb3e89b0832c9616089a5cdca3747da7 - < 8a54834c03c30e549c33d5da0975f3e1454ec906
affected
6ecf4c37eb3e89b0832c9616089a5cdca3747da7 - < 1b0998fdd85776775d975d0024bca227597e836a
affected
6ecf4c37eb3e89b0832c9616089a5cdca3747da7 - < 44112bc5c74e64f28f5a9127dc34066c7a09bd0f

+2 more versions

Linux

Linux

affected
4.20
unaffected
0 - < 4.20
unaffected
5.4.271 - <= 5.4.*
unaffected
5.10.212 - <= 5.10.*
unaffected
5.15.151 - <= 5.15.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now