CVE-2024-27017

Source
https://cve.org/CVERecord?id=CVE-2024-27017
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-27017.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-27017
Downstream
Related
Published
2024-05-01T05:30:01.888Z
Modified
2026-03-14T12:27:44.029721Z
Summary
netfilter: nft_set_pipapo: walk over current view on netlink dump
Details

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nftsetpipapo: walk over current view on netlink dump

The generation mask can be updated while netlink dump is in progress. The pipapo set backend walk iterator cannot rely on it to infer what view of the datastructure is to be used. Add notation to specify if user wants to read/update the set.

Based on patch from Florian Westphal.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/27xxx/CVE-2024-27017.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
2a90da8e0dd50f42e577988f4219f4f4cd3616b7
Fixed
ff89db14c63a827066446460e39226c0688ef786
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
45eb6944d0f55102229115de040ef3a48841434a
Fixed
ce9fef54c5ec9912a0c9a47bac3195cc41b14679
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0d836f917520300a8725a5dbdad4406438d0cead
Fixed
52735a010f37580b3a569a996f878fdd87425650
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
2b84e215f87443c74ac0aa7f76bb172d43a87033
Fixed
f24d8abc2bb8cbf31ec713336e402eafa8f42f60
Fixed
721715655c72640567e8742567520c99801148ed
Fixed
29b359cf6d95fd60730533f7f10464e95bd17c73
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
f661383b5f1aaac3fe121b91e04332944bc90193

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-27017.json"