CVE-2024-35870

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-35870
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-35870.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-35870
Downstream
Related
Published
2024-05-19T08:34:28Z
Modified
2025-10-15T11:05:23.169534Z
Severity
  • 4.4 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
smb: client: fix UAF in smb2_reconnect_server()
Details

In the Linux kernel, the following vulnerability has been resolved:

smb: client: fix UAF in smb2reconnectserver()

The UAF bug is due to smb2reconnectserver() accessing a session that is already being teared down by another thread that is executing _cifsputsmbses(). This can happen when (a) the client has connection to the server but no session or (b) another thread ends up setting @ses->sesstatus again to something different than SESEXITING.

To fix this, we need to make sure to unconditionally set @ses->sesstatus to SESEXITING and prevent any other threads from setting a new status while we're still tearing it down.

The following can be reproduced by adding some delay to right after the ipc is freed in _cifsputsmbses() - which will give smb2reconnectserver() worker a chance to run and then accessing @ses->ipc:

kinit ... mount.cifs //srv/share /mnt/1 -o sec=krb5,nohandlecache,echointerval=10 [disconnect srv] ls /mnt/1 &>/dev/null sleep 30 kdestroy [reconnect srv] sleep 10 umount /mnt/1 ... CIFS: VFS: Verify user has a krb5 ticket and keyutils is installed CIFS: VFS: \srv Send error in SessSetup = -126 CIFS: VFS: Verify user has a krb5 ticket and keyutils is installed CIFS: VFS: \srv Send error in SessSetup = -126 general protection fault, probably for non-canonical address 0x6b6b6b6b6b6b6b6b: 0000 [#1] PREEMPT SMP NOPTI CPU: 3 PID: 50 Comm: kworker/3:1 Not tainted 6.9.0-rc2 #1 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-1.fc39 04/01/2014 Workqueue: cifsiod smb2reconnectserver [cifs] RIP: 0010:listdelentryvalidorreport+0x33/0xf0 Code: 4f 08 48 85 d2 74 42 48 85 c9 74 59 48 b8 00 01 00 00 00 00 ad de 48 39 c2 74 61 48 b8 22 01 00 00 00 00 74 69 <48> 8b 01 48 39 f8 75 7b 48 8b 72 08 48 39 c6 0f 85 88 00 00 00 b8 RSP: 0018:ffffc900001bfd70 EFLAGS: 00010a83 RAX: dead000000000122 RBX: ffff88810da53838 RCX: 6b6b6b6b6b6b6b6b RDX: 6b6b6b6b6b6b6b6b RSI: ffffffffc02f6878 RDI: ffff88810da53800 RBP: ffff88810da53800 R08: 0000000000000001 R09: 0000000000000000 R10: 0000000000000000 R11: 0000000000000001 R12: ffff88810c064000 R13: 0000000000000001 R14: ffff88810c064000 R15: ffff8881039cc000 FS: 0000000000000000(0000) GS:ffff888157c00000(0000) knlGS:0000000000000000 CS: 0010 DS: 0000 ES: 0000 CR0: 0000000080050033 CR2: 00007fe3728b1000 CR3: 000000010caa4000 CR4: 0000000000750ef0 PKRU: 55555554 Call Trace: <TASK> ? dieaddr+0x36/0x90 ? excgeneralprotection+0x1c1/0x3f0 ? asmexcgeneralprotection+0x26/0x30 ? _listdelentryvalidorreport+0x33/0xf0 _cifsputsmbses+0x1ae/0x500 [cifs] smb2reconnectserver+0x4ed/0x710 [cifs] processonework+0x205/0x6b0 workerthread+0x191/0x360 ? _pfxworkerthread+0x10/0x10 kthread+0xe2/0x110 ? _pfxkthread+0x10/0x10 retfromfork+0x34/0x50 ? _pfxkthread+0x10/0x10 retfromfork_asm+0x1a/0x30 </TASK>

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
755fe68cd4b59e1d2a2dd3286177fd4404f57fed
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
6202996a1c1887e83d0b3b0fcd86d0e5e6910ea0
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
45f2beda1f1bc3d962ec07db1ccc3197c25499a5
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
24a9799aa8efecd0eb55a75e35f9d8e6400063aa

Affected versions

v2.*

v2.6.12
v2.6.12-rc2
v2.6.12-rc3
v2.6.12-rc4
v2.6.12-rc5
v2.6.12-rc6
v2.6.13
v2.6.13-rc1
v2.6.13-rc2
v2.6.13-rc3
v2.6.13-rc4
v2.6.13-rc5
v2.6.13-rc6
v2.6.13-rc7
v2.6.14
v2.6.14-rc1
v2.6.14-rc2
v2.6.14-rc3
v2.6.14-rc4
v2.6.14-rc5
v2.6.15
v2.6.15-rc1
v2.6.15-rc2
v2.6.15-rc3
v2.6.15-rc4
v2.6.15-rc5
v2.6.15-rc6
v2.6.15-rc7
v2.6.16
v2.6.16-rc1
v2.6.16-rc2
v2.6.16-rc3
v2.6.16-rc4
v2.6.16-rc5
v2.6.16-rc6
v2.6.17
v2.6.17-rc1
v2.6.17-rc2
v2.6.17-rc3
v2.6.17-rc4
v2.6.17-rc5
v2.6.17-rc6
v2.6.18
v2.6.18-rc1
v2.6.18-rc2
v2.6.18-rc3
v2.6.18-rc4
v2.6.18-rc5
v2.6.18-rc6
v2.6.18-rc7
v2.6.19
v2.6.19-rc1
v2.6.19-rc2
v2.6.19-rc3
v2.6.19-rc4
v2.6.19-rc5
v2.6.19-rc6
v2.6.20
v2.6.20-rc1
v2.6.20-rc2
v2.6.20-rc3
v2.6.20-rc4
v2.6.20-rc5
v2.6.20-rc6
v2.6.20-rc7
v2.6.21
v2.6.21-rc1
v2.6.21-rc2
v2.6.21-rc3
v2.6.21-rc4
v2.6.21-rc5
v2.6.21-rc6
v2.6.21-rc7
v2.6.22
v2.6.22-rc1
v2.6.22-rc2
v2.6.22-rc3
v2.6.22-rc4
v2.6.22-rc5
v2.6.22-rc6
v2.6.22-rc7
v2.6.23
v2.6.23-rc1
v2.6.23-rc2
v2.6.23-rc3
v2.6.23-rc4
v2.6.23-rc5
v2.6.23-rc6
v2.6.23-rc7
v2.6.23-rc8
v2.6.23-rc9
v2.6.24
v2.6.24-rc1
v2.6.24-rc2
v2.6.24-rc3
v2.6.24-rc4
v2.6.24-rc5
v2.6.24-rc6
v2.6.24-rc7
v2.6.24-rc8
v2.6.25
v2.6.25-rc1
v2.6.25-rc2
v2.6.25-rc3
v2.6.25-rc4
v2.6.25-rc5
v2.6.25-rc6
v2.6.25-rc7
v2.6.25-rc8
v2.6.25-rc9
v2.6.26
v2.6.26-rc1
v2.6.26-rc2
v2.6.26-rc3
v2.6.26-rc4
v2.6.26-rc5
v2.6.26-rc6
v2.6.26-rc7
v2.6.26-rc8
v2.6.26-rc9
v2.6.27
v2.6.27-rc1
v2.6.27-rc2
v2.6.27-rc3
v2.6.27-rc4
v2.6.27-rc5
v2.6.27-rc6
v2.6.27-rc7
v2.6.27-rc8
v2.6.27-rc9
v2.6.28
v2.6.28-rc1
v2.6.28-rc2
v2.6.28-rc3
v2.6.28-rc4
v2.6.28-rc5
v2.6.28-rc6
v2.6.28-rc7
v2.6.28-rc8
v2.6.28-rc9
v2.6.29
v2.6.29-rc1
v2.6.29-rc2
v2.6.29-rc3
v2.6.29-rc4
v2.6.29-rc5
v2.6.29-rc6
v2.6.29-rc7
v2.6.29-rc8
v2.6.30
v2.6.30-rc1
v2.6.30-rc2
v2.6.30-rc3
v2.6.30-rc4
v2.6.30-rc5
v2.6.30-rc6
v2.6.30-rc7
v2.6.30-rc8
v2.6.31
v2.6.31-rc1
v2.6.31-rc2
v2.6.31-rc3
v2.6.31-rc4
v2.6.31-rc5
v2.6.31-rc6
v2.6.31-rc7
v2.6.31-rc8
v2.6.31-rc9
v2.6.32
v2.6.32-rc1
v2.6.32-rc2
v2.6.32-rc3
v2.6.32-rc4
v2.6.32-rc5
v2.6.32-rc6
v2.6.32-rc7
v2.6.32-rc8
v2.6.33
v2.6.33-rc1
v2.6.33-rc2
v2.6.33-rc3
v2.6.33-rc4
v2.6.33-rc5
v2.6.33-rc6
v2.6.33-rc7
v2.6.33-rc8
v2.6.34
v2.6.34-rc1
v2.6.34-rc2
v2.6.34-rc3
v2.6.34-rc4
v2.6.34-rc5
v2.6.34-rc6
v2.6.34-rc7
v2.6.35
v2.6.35-rc1
v2.6.35-rc2
v2.6.35-rc3
v2.6.35-rc4
v2.6.35-rc5
v2.6.35-rc6
v2.6.36
v2.6.36-rc1
v2.6.36-rc2
v2.6.36-rc3
v2.6.36-rc4
v2.6.36-rc5
v2.6.36-rc6
v2.6.36-rc7
v2.6.36-rc8
v2.6.37
v2.6.37-rc1
v2.6.37-rc2
v2.6.37-rc3
v2.6.37-rc4
v2.6.37-rc5
v2.6.37-rc6
v2.6.37-rc7
v2.6.37-rc8
v2.6.38
v2.6.38-rc1
v2.6.38-rc2
v2.6.38-rc3
v2.6.38-rc4
v2.6.38-rc5
v2.6.38-rc6
v2.6.38-rc7
v2.6.38-rc8
v2.6.39
v2.6.39-rc1
v2.6.39-rc2
v2.6.39-rc3
v2.6.39-rc4
v2.6.39-rc5
v2.6.39-rc6
v2.6.39-rc7

v3.*

v3.0
v3.0-rc1
v3.0-rc2
v3.0-rc3
v3.0-rc4
v3.0-rc5
v3.0-rc6
v3.0-rc7
v3.1
v3.1-rc1
v3.1-rc10
v3.1-rc2
v3.1-rc3
v3.1-rc4
v3.1-rc5
v3.1-rc6
v3.1-rc7
v3.1-rc8
v3.1-rc9
v3.10
v3.10-rc1
v3.10-rc2
v3.10-rc3
v3.10-rc4
v3.10-rc5
v3.10-rc6
v3.10-rc7
v3.11
v3.11-rc1
v3.11-rc2
v3.11-rc3
v3.11-rc4
v3.11-rc5
v3.11-rc6
v3.11-rc7
v3.12
v3.12-rc1
v3.12-rc2
v3.12-rc3
v3.12-rc4
v3.12-rc5
v3.12-rc6
v3.12-rc7
v3.13
v3.13-rc1
v3.13-rc2
v3.13-rc3
v3.13-rc4
v3.13-rc5
v3.13-rc6
v3.13-rc7
v3.13-rc8
v3.14
v3.14-rc1
v3.14-rc2
v3.14-rc3
v3.14-rc4
v3.14-rc5
v3.14-rc6
v3.14-rc7
v3.14-rc8
v3.15
v3.15-rc1
v3.15-rc2
v3.15-rc3
v3.15-rc4
v3.15-rc5
v3.15-rc6
v3.15-rc7
v3.15-rc8
v3.16
v3.16-rc1
v3.16-rc2
v3.16-rc3
v3.16-rc4
v3.16-rc5
v3.16-rc6
v3.16-rc7
v3.17
v3.17-rc1
v3.17-rc2
v3.17-rc3
v3.17-rc4
v3.17-rc5
v3.17-rc6
v3.17-rc7
v3.18
v3.18-rc1
v3.18-rc2
v3.18-rc3
v3.18-rc4
v3.18-rc5
v3.18-rc6
v3.18-rc7
v3.19
v3.19-rc1
v3.19-rc2
v3.19-rc3
v3.19-rc4
v3.19-rc5
v3.19-rc6
v3.19-rc7
v3.2
v3.2-rc1
v3.2-rc2
v3.2-rc3
v3.2-rc4
v3.2-rc5
v3.2-rc6
v3.2-rc7
v3.3
v3.3-rc1
v3.3-rc2
v3.3-rc3
v3.3-rc4
v3.3-rc5
v3.3-rc6
v3.3-rc7
v3.4
v3.4-rc1
v3.4-rc2
v3.4-rc3
v3.4-rc4
v3.4-rc5
v3.4-rc6
v3.4-rc7
v3.5
v3.5-rc1
v3.5-rc2
v3.5-rc3
v3.5-rc4
v3.5-rc5
v3.5-rc6
v3.5-rc7
v3.6
v3.6-rc1
v3.6-rc2
v3.6-rc3
v3.6-rc4
v3.6-rc5
v3.6-rc6
v3.6-rc7
v3.7
v3.7-rc1
v3.7-rc2
v3.7-rc3
v3.7-rc4
v3.7-rc5
v3.7-rc6
v3.7-rc7
v3.7-rc8
v3.8
v3.8-rc1
v3.8-rc2
v3.8-rc3
v3.8-rc4
v3.8-rc5
v3.8-rc6
v3.8-rc7
v3.9
v3.9-rc1
v3.9-rc2
v3.9-rc3
v3.9-rc4
v3.9-rc5
v3.9-rc6
v3.9-rc7
v3.9-rc8

v4.*

v4.0
v4.0-rc1
v4.0-rc2
v4.0-rc3
v4.0-rc4
v4.0-rc5
v4.0-rc6
v4.0-rc7
v4.1
v4.1-rc1
v4.1-rc2
v4.1-rc3
v4.1-rc4
v4.1-rc5
v4.1-rc6
v4.1-rc7
v4.1-rc8
v4.10
v4.10-rc1
v4.10-rc2
v4.10-rc3
v4.10-rc4
v4.10-rc5
v4.10-rc6
v4.10-rc7
v4.10-rc8
v4.11
v4.11-rc1
v4.11-rc2
v4.11-rc3
v4.11-rc4
v4.11-rc5
v4.11-rc6
v4.11-rc7
v4.11-rc8
v4.12
v4.12-rc1
v4.12-rc2
v4.12-rc3
v4.12-rc4
v4.12-rc5
v4.12-rc6
v4.12-rc7
v4.13
v4.13-rc1
v4.13-rc2
v4.13-rc3
v4.13-rc4
v4.13-rc5
v4.13-rc6
v4.13-rc7
v4.14
v4.14-rc1
v4.14-rc2
v4.14-rc3
v4.14-rc4
v4.14-rc5
v4.14-rc6
v4.14-rc7
v4.14-rc8
v4.15
v4.15-rc1
v4.15-rc2
v4.15-rc3
v4.15-rc4
v4.15-rc5
v4.15-rc6
v4.15-rc7
v4.15-rc8
v4.15-rc9
v4.16
v4.16-rc1
v4.16-rc2
v4.16-rc3
v4.16-rc4
v4.16-rc5
v4.16-rc6
v4.16-rc7
v4.17
v4.17-rc1
v4.17-rc2
v4.17-rc3
v4.17-rc4
v4.17-rc5
v4.17-rc6
v4.17-rc7
v4.18
v4.18-rc1
v4.18-rc2
v4.18-rc3
v4.18-rc4
v4.18-rc5
v4.18-rc6
v4.18-rc7
v4.18-rc8
v4.19
v4.19-rc1
v4.19-rc2
v4.19-rc3
v4.19-rc4
v4.19-rc5
v4.19-rc6
v4.19-rc7
v4.19-rc8
v4.2
v4.2-rc1
v4.2-rc2
v4.2-rc3
v4.2-rc4
v4.2-rc5
v4.2-rc6
v4.2-rc7
v4.2-rc8
v4.20
v4.20-rc1
v4.20-rc2
v4.20-rc3
v4.20-rc4
v4.20-rc5
v4.20-rc6
v4.20-rc7
v4.3
v4.3-rc1
v4.3-rc2
v4.3-rc3
v4.3-rc4
v4.3-rc5
v4.3-rc6
v4.3-rc7
v4.4
v4.4-rc1
v4.4-rc2
v4.4-rc3
v4.4-rc4
v4.4-rc5
v4.4-rc6
v4.4-rc7
v4.4-rc8
v4.5
v4.5-rc1
v4.5-rc2
v4.5-rc3
v4.5-rc4
v4.5-rc5
v4.5-rc6
v4.5-rc7
v4.6
v4.6-rc1
v4.6-rc2
v4.6-rc3
v4.6-rc4
v4.6-rc5
v4.6-rc6
v4.6-rc7
v4.7
v4.7-rc1
v4.7-rc2
v4.7-rc3
v4.7-rc4
v4.7-rc5
v4.7-rc6
v4.7-rc7
v4.8
v4.8-rc1
v4.8-rc2
v4.8-rc3
v4.8-rc4
v4.8-rc5
v4.8-rc6
v4.8-rc7
v4.8-rc8
v4.9
v4.9-rc1
v4.9-rc2
v4.9-rc3
v4.9-rc4
v4.9-rc5
v4.9-rc6
v4.9-rc7
v4.9-rc8

v5.*

v5.0
v5.0-rc1
v5.0-rc2
v5.0-rc3
v5.0-rc4
v5.0-rc5
v5.0-rc6
v5.0-rc7
v5.0-rc8
v5.1
v5.1-rc1
v5.1-rc2
v5.1-rc3
v5.1-rc4
v5.1-rc5
v5.1-rc6
v5.1-rc7
v5.10
v5.10-rc1
v5.10-rc2
v5.10-rc3
v5.10-rc4
v5.10-rc5
v5.10-rc6
v5.10-rc7
v5.11
v5.11-rc1
v5.11-rc2
v5.11-rc3
v5.11-rc4
v5.11-rc5
v5.11-rc6
v5.11-rc7
v5.12
v5.12-rc1
v5.12-rc1-dontuse
v5.12-rc2
v5.12-rc3
v5.12-rc4
v5.12-rc5
v5.12-rc6
v5.12-rc7
v5.12-rc8
v5.13
v5.13-rc1
v5.13-rc2
v5.13-rc3
v5.13-rc4
v5.13-rc5
v5.13-rc6
v5.13-rc7
v5.14
v5.14-rc1
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.17
v5.17-rc1
v5.17-rc2
v5.17-rc3
v5.17-rc4
v5.17-rc5
v5.17-rc6
v5.17-rc7
v5.17-rc8
v5.18
v5.18-rc1
v5.18-rc2
v5.18-rc3
v5.18-rc4
v5.18-rc5
v5.18-rc6
v5.18-rc7
v5.19
v5.19-rc1
v5.19-rc2
v5.19-rc3
v5.19-rc4
v5.19-rc5
v5.19-rc6
v5.19-rc7
v5.19-rc8
v5.2
v5.2-rc1
v5.2-rc2
v5.2-rc3
v5.2-rc4
v5.2-rc5
v5.2-rc6
v5.2-rc7
v5.3
v5.3-rc1
v5.3-rc2
v5.3-rc3
v5.3-rc4
v5.3-rc5
v5.3-rc6
v5.3-rc7
v5.3-rc8
v5.4
v5.4-rc1
v5.4-rc2
v5.4-rc3
v5.4-rc4
v5.4-rc5
v5.4-rc6
v5.4-rc7
v5.4-rc8
v5.5
v5.5-rc1
v5.5-rc2
v5.5-rc3
v5.5-rc4
v5.5-rc5
v5.5-rc6
v5.5-rc7
v5.6
v5.6-rc1
v5.6-rc2
v5.6-rc3
v5.6-rc4
v5.6-rc5
v5.6-rc6
v5.6-rc7
v5.7
v5.7-rc1
v5.7-rc2
v5.7-rc3
v5.7-rc4
v5.7-rc5
v5.7-rc6
v5.7-rc7
v5.8
v5.8-rc1
v5.8-rc2
v5.8-rc3
v5.8-rc4
v5.8-rc5
v5.8-rc6
v5.8-rc7
v5.9
v5.9-rc1
v5.9-rc2
v5.9-rc3
v5.9-rc4
v5.9-rc5
v5.9-rc6
v5.9-rc7
v5.9-rc8

v6.*

v6.0
v6.0-rc1
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.1
v6.1-rc1
v6.1-rc2
v6.1-rc3
v6.1-rc4
v6.1-rc5
v6.1-rc6
v6.1-rc7
v6.1-rc8
v6.1.1
v6.1.10
v6.1.100
v6.1.101
v6.1.102
v6.1.103
v6.1.104
v6.1.105
v6.1.106
v6.1.107
v6.1.108
v6.1.109
v6.1.11
v6.1.110
v6.1.111
v6.1.112
v6.1.113
v6.1.114
v6.1.115
v6.1.116
v6.1.117
v6.1.118
v6.1.119
v6.1.12
v6.1.120
v6.1.13
v6.1.14
v6.1.15
v6.1.16
v6.1.17
v6.1.18
v6.1.19
v6.1.2
v6.1.20
v6.1.21
v6.1.22
v6.1.23
v6.1.24
v6.1.25
v6.1.26
v6.1.27
v6.1.28
v6.1.29
v6.1.3
v6.1.30
v6.1.31
v6.1.32
v6.1.33
v6.1.34
v6.1.35
v6.1.36
v6.1.37
v6.1.38
v6.1.39
v6.1.4
v6.1.40
v6.1.41
v6.1.42
v6.1.43
v6.1.44
v6.1.45
v6.1.46
v6.1.47
v6.1.48
v6.1.49
v6.1.5
v6.1.50
v6.1.51
v6.1.52
v6.1.53
v6.1.54
v6.1.55
v6.1.56
v6.1.57
v6.1.58
v6.1.59
v6.1.6
v6.1.60
v6.1.61
v6.1.62
v6.1.63
v6.1.64
v6.1.65
v6.1.66
v6.1.67
v6.1.68
v6.1.69
v6.1.7
v6.1.70
v6.1.71
v6.1.72
v6.1.73
v6.1.74
v6.1.75
v6.1.76
v6.1.77
v6.1.78
v6.1.79
v6.1.8
v6.1.80
v6.1.81
v6.1.82
v6.1.83
v6.1.84
v6.1.85
v6.1.86
v6.1.87
v6.1.88
v6.1.89
v6.1.9
v6.1.90
v6.1.91
v6.1.92
v6.1.93
v6.1.94
v6.1.95
v6.1.96
v6.1.97
v6.1.98
v6.1.99
v6.2
v6.2-rc1
v6.2-rc2
v6.2-rc3
v6.2-rc4
v6.2-rc5
v6.2-rc6
v6.2-rc7
v6.2-rc8
v6.3
v6.3-rc1
v6.3-rc2
v6.3-rc3
v6.3-rc4
v6.3-rc5
v6.3-rc6
v6.3-rc7
v6.4
v6.4-rc1
v6.4-rc2
v6.4-rc3
v6.4-rc4
v6.4-rc5
v6.4-rc6
v6.4-rc7
v6.5
v6.5-rc1
v6.5-rc2
v6.5-rc3
v6.5-rc4
v6.5-rc5
v6.5-rc6
v6.5-rc7
v6.6
v6.6-rc1
v6.6-rc2
v6.6-rc3
v6.6-rc4
v6.6-rc5
v6.6-rc6
v6.6-rc7
v6.6.1
v6.6.10
v6.6.11
v6.6.12
v6.6.13
v6.6.14
v6.6.15
v6.6.16
v6.6.17
v6.6.18
v6.6.19
v6.6.2
v6.6.20
v6.6.21
v6.6.22
v6.6.23
v6.6.24
v6.6.25
v6.6.26
v6.6.27
v6.6.28
v6.6.3
v6.6.4
v6.6.5
v6.6.6
v6.6.7
v6.6.8
v6.6.9
v6.7
v6.7-rc1
v6.7-rc2
v6.7-rc3
v6.7-rc4
v6.7-rc5
v6.7-rc6
v6.7-rc7
v6.7-rc8
v6.8
v6.8-rc1
v6.8-rc2
v6.8-rc3
v6.8-rc4
v6.8-rc5
v6.8-rc6
v6.8-rc7
v6.8.1
v6.8.2
v6.8.3
v6.8.4
v6.9-rc1
v6.9-rc2

Database specific

{
    "vanir_signatures": [
        {
            "id": "CVE-2024-35870-073e218e",
            "signature_type": "Line",
            "target": {
                "file": "fs/smb/client/connect.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "91968238297685670571540074214466388051",
                    "277116902418708371536180479350299132006",
                    "113477960854159565425342240721497025063",
                    "212750884366353722771948850797607994795",
                    "288434007282812354609867462088692290548",
                    "130782686396437693106128342504260559876",
                    "231428931683141955398004066117791350263",
                    "74776768209163810296046921415849913327",
                    "338856721687517191843979775922193927268",
                    "114130157170762723630173064795478554687",
                    "122076069146689655724950728819361285443",
                    "17336126296011380977843622878282514546",
                    "101743635638789521656511559934554910538",
                    "278825324607573845601117120383636850966",
                    "106389457132119387356374621735502468529",
                    "278253446337292474729628977989075084358",
                    "162030836625922334352491337988356716611",
                    "93524296763325160698076442613532995177",
                    "292030665901809209035923718308638891307",
                    "219864868595331530491990378147237616426",
                    "317937983526872431349235684580032529340",
                    "233209962698479040967290697685585531624",
                    "65330911973338457711701876160658744920",
                    "168803393952140101833782798524385714260",
                    "230564474187819692852902034807341036016",
                    "273812123799325601025558988059905136245",
                    "20203945726770718122726618916891771826",
                    "283390536529156446081143504222321887568",
                    "321799206484889721617261394653255205628",
                    "236487516484735432679130146836209785695",
                    "215024648106139686865635951690243266915",
                    "181487906465712538038741323974004361693",
                    "225609732263776225430469946052547686029",
                    "155713804012309593721318980419233649530",
                    "181567596679062440441994845946235298072",
                    "193670668784042847799973171687337690934",
                    "103377844516606078737017059898168726896",
                    "151426089042412380850664770687718378449",
                    "87216857562429017791563365342982275622",
                    "152039261194444765632649355175804020957",
                    "166270312775271163096229635719528973498",
                    "312600274077244799902980822541639824751",
                    "153369247156915537421146840623833923733",
                    "39956679424291206437375149038321152928",
                    "102074540804282637804574693173587044693",
                    "137697149647966534078267574201581687910",
                    "179272385806638466723635167227648071183",
                    "223742817218923821887591510142314224796",
                    "95198995084114347657391021466648053426",
                    "29268892838310687905297360379113600101",
                    "73987102860386344608271781052547372599",
                    "236249950980033131824818886205936813022",
                    "33499199497576837186137865559396009401",
                    "221694518460442565282160832473717025819",
                    "251376489516648075459285020585279630748",
                    "320587496816981177353366868934079926621"
                ],
                "threshold": 0.9
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@24a9799aa8efecd0eb55a75e35f9d8e6400063aa"
        },
        {
            "id": "CVE-2024-35870-1a9a7339",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "cifs_mark_tcp_ses_conns_for_reconnect"
            },
            "signature_version": "v1",
            "digest": {
                "length": 1652.0,
                "function_hash": "221864857019206561323376313447970765433"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@24a9799aa8efecd0eb55a75e35f9d8e6400063aa"
        },
        {
            "id": "CVE-2024-35870-3133b37b",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "__cifs_put_smb_ses"
            },
            "signature_version": "v1",
            "digest": {
                "length": 1793.0,
                "function_hash": "238461785610601975145182607263154152615"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@24a9799aa8efecd0eb55a75e35f9d8e6400063aa"
        },
        {
            "id": "CVE-2024-35870-4bd5e135",
            "signature_type": "Line",
            "target": {
                "file": "fs/smb/client/connect.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "91968238297685670571540074214466388051",
                    "277116902418708371536180479350299132006",
                    "113477960854159565425342240721497025063",
                    "212750884366353722771948850797607994795",
                    "288434007282812354609867462088692290548",
                    "130782686396437693106128342504260559876",
                    "231428931683141955398004066117791350263",
                    "74776768209163810296046921415849913327",
                    "338856721687517191843979775922193927268",
                    "114130157170762723630173064795478554687",
                    "122076069146689655724950728819361285443",
                    "17336126296011380977843622878282514546",
                    "101743635638789521656511559934554910538",
                    "278825324607573845601117120383636850966",
                    "106389457132119387356374621735502468529",
                    "278253446337292474729628977989075084358",
                    "162030836625922334352491337988356716611",
                    "93524296763325160698076442613532995177",
                    "292030665901809209035923718308638891307",
                    "219864868595331530491990378147237616426",
                    "317937983526872431349235684580032529340",
                    "233209962698479040967290697685585531624",
                    "65330911973338457711701876160658744920",
                    "168803393952140101833782798524385714260",
                    "230564474187819692852902034807341036016",
                    "273812123799325601025558988059905136245",
                    "20203945726770718122726618916891771826",
                    "283390536529156446081143504222321887568",
                    "321799206484889721617261394653255205628",
                    "236487516484735432679130146836209785695",
                    "215024648106139686865635951690243266915",
                    "181487906465712538038741323974004361693",
                    "225609732263776225430469946052547686029",
                    "155713804012309593721318980419233649530",
                    "181567596679062440441994845946235298072",
                    "193670668784042847799973171687337690934",
                    "103377844516606078737017059898168726896",
                    "151426089042412380850664770687718378449",
                    "87216857562429017791563365342982275622",
                    "152039261194444765632649355175804020957",
                    "166270312775271163096229635719528973498",
                    "312600274077244799902980822541639824751",
                    "153369247156915537421146840623833923733",
                    "39956679424291206437375149038321152928",
                    "102074540804282637804574693173587044693",
                    "137697149647966534078267574201581687910",
                    "179272385806638466723635167227648071183",
                    "223742817218923821887591510142314224796",
                    "95198995084114347657391021466648053426",
                    "29268892838310687905297360379113600101",
                    "73987102860386344608271781052547372599",
                    "236249950980033131824818886205936813022",
                    "33499199497576837186137865559396009401",
                    "221694518460442565282160832473717025819",
                    "251376489516648075459285020585279630748",
                    "320587496816981177353366868934079926621"
                ],
                "threshold": 0.9
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@45f2beda1f1bc3d962ec07db1ccc3197c25499a5"
        },
        {
            "id": "CVE-2024-35870-8b0841ab",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "cifs_mark_tcp_ses_conns_for_reconnect"
            },
            "signature_version": "v1",
            "digest": {
                "length": 1652.0,
                "function_hash": "221864857019206561323376313447970765433"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6202996a1c1887e83d0b3b0fcd86d0e5e6910ea0"
        },
        {
            "id": "CVE-2024-35870-8d188237",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "cifs_mark_tcp_ses_conns_for_reconnect"
            },
            "signature_version": "v1",
            "digest": {
                "length": 1652.0,
                "function_hash": "221864857019206561323376313447970765433"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@45f2beda1f1bc3d962ec07db1ccc3197c25499a5"
        },
        {
            "id": "CVE-2024-35870-8fa40c6a",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "cifs_free_ipc"
            },
            "signature_version": "v1",
            "digest": {
                "length": 164.0,
                "function_hash": "202118076403617456228457149266969191955"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@45f2beda1f1bc3d962ec07db1ccc3197c25499a5"
        },
        {
            "id": "CVE-2024-35870-abb58604",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "__cifs_put_smb_ses"
            },
            "signature_version": "v1",
            "digest": {
                "length": 1793.0,
                "function_hash": "238461785610601975145182607263154152615"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6202996a1c1887e83d0b3b0fcd86d0e5e6910ea0"
        },
        {
            "id": "CVE-2024-35870-c5e162e8",
            "signature_type": "Line",
            "target": {
                "file": "fs/smb/client/connect.c"
            },
            "signature_version": "v1",
            "digest": {
                "line_hashes": [
                    "91968238297685670571540074214466388051",
                    "277116902418708371536180479350299132006",
                    "113477960854159565425342240721497025063",
                    "212750884366353722771948850797607994795",
                    "288434007282812354609867462088692290548",
                    "130782686396437693106128342504260559876",
                    "231428931683141955398004066117791350263",
                    "74776768209163810296046921415849913327",
                    "338856721687517191843979775922193927268",
                    "114130157170762723630173064795478554687",
                    "122076069146689655724950728819361285443",
                    "17336126296011380977843622878282514546",
                    "101743635638789521656511559934554910538",
                    "278825324607573845601117120383636850966",
                    "106389457132119387356374621735502468529",
                    "278253446337292474729628977989075084358",
                    "162030836625922334352491337988356716611",
                    "93524296763325160698076442613532995177",
                    "292030665901809209035923718308638891307",
                    "219864868595331530491990378147237616426",
                    "317937983526872431349235684580032529340",
                    "233209962698479040967290697685585531624",
                    "65330911973338457711701876160658744920",
                    "168803393952140101833782798524385714260",
                    "230564474187819692852902034807341036016",
                    "273812123799325601025558988059905136245",
                    "20203945726770718122726618916891771826",
                    "283390536529156446081143504222321887568",
                    "321799206484889721617261394653255205628",
                    "236487516484735432679130146836209785695",
                    "215024648106139686865635951690243266915",
                    "181487906465712538038741323974004361693",
                    "225609732263776225430469946052547686029",
                    "155713804012309593721318980419233649530",
                    "181567596679062440441994845946235298072",
                    "193670668784042847799973171687337690934",
                    "103377844516606078737017059898168726896",
                    "151426089042412380850664770687718378449",
                    "87216857562429017791563365342982275622",
                    "152039261194444765632649355175804020957",
                    "166270312775271163096229635719528973498",
                    "312600274077244799902980822541639824751",
                    "153369247156915537421146840623833923733",
                    "39956679424291206437375149038321152928",
                    "102074540804282637804574693173587044693",
                    "137697149647966534078267574201581687910",
                    "179272385806638466723635167227648071183",
                    "223742817218923821887591510142314224796",
                    "95198995084114347657391021466648053426",
                    "29268892838310687905297360379113600101",
                    "73987102860386344608271781052547372599",
                    "236249950980033131824818886205936813022",
                    "33499199497576837186137865559396009401",
                    "221694518460442565282160832473717025819",
                    "251376489516648075459285020585279630748",
                    "320587496816981177353366868934079926621"
                ],
                "threshold": 0.9
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6202996a1c1887e83d0b3b0fcd86d0e5e6910ea0"
        },
        {
            "id": "CVE-2024-35870-ccb0d129",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "cifs_free_ipc"
            },
            "signature_version": "v1",
            "digest": {
                "length": 164.0,
                "function_hash": "202118076403617456228457149266969191955"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@6202996a1c1887e83d0b3b0fcd86d0e5e6910ea0"
        },
        {
            "id": "CVE-2024-35870-d87cb0b1",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "__cifs_put_smb_ses"
            },
            "signature_version": "v1",
            "digest": {
                "length": 1793.0,
                "function_hash": "238461785610601975145182607263154152615"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@45f2beda1f1bc3d962ec07db1ccc3197c25499a5"
        },
        {
            "id": "CVE-2024-35870-fe42ef5d",
            "signature_type": "Function",
            "target": {
                "file": "fs/smb/client/connect.c",
                "function": "cifs_free_ipc"
            },
            "signature_version": "v1",
            "digest": {
                "length": 164.0,
                "function_hash": "202118076403617456228457149266969191955"
            },
            "deprecated": false,
            "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@24a9799aa8efecd0eb55a75e35f9d8e6400063aa"
        }
    ]
}

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.1.121
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.29
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.8.5