CVE Database
/

CVE-2024-56637

Back to search

CVE-2024-56637

Published: Dec 27, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Hold module reference while requesting a module User space may unload ip_set.ko while it is itself requesting a set type backend module, leading to a kernel crash. The race condition may be provoked by inserting an mdelay() right after the nfnl_unlock() call.

VendorProductVersions

Linux

Linux

affected
a7b4f989a629493bb4ec4a354def784d440b32c4 - < e5e2d3024753fdaca818b822e3827614bacbdccf
affected
a7b4f989a629493bb4ec4a354def784d440b32c4 - < 6099b5d3e37145484fac4b8b4070c3f1abfb3519
affected
a7b4f989a629493bb4ec4a354def784d440b32c4 - < 0e67805e805c1f3edd6f43adbe08ea14b552694b
affected
a7b4f989a629493bb4ec4a354def784d440b32c4 - < 5bae60a933ba5d16eed55c6b279be51bcbbc79b0
affected
a7b4f989a629493bb4ec4a354def784d440b32c4 - < 90bf312a6b6b3d6012137f6776a4052ee85e0340

+2 more versions

Linux

Linux

affected
2.6.39
unaffected
0 - < 2.6.39
unaffected
5.4.287 - <= 5.4.*
unaffected
5.10.231 - <= 5.10.*
unaffected
5.15.174 - <= 5.15.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now