In the Linux kernel, the following vulnerability has been resolved:
fou: remove warn in guegroreceive on unsupported protocol
Drop the WARNONONCE inn guegroreceive if the encapsulated type is not known or does not have a GRO handler.
Such a packet is easily constructed. Syzbot generates them and sets off this warning.
Remove the warning as it is expected and not actionable.
The warning was previously reduced from WARNON to WARNONONCE in commit 270136613bf7 ("fou: Do WARNONONCE in guegro_receive for bad proto callbacks").
[
{
"id": "CVE-2024-44940-2358dabb",
"target": {
"file": "net/ipv4/fou.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"89803552106972963095144740788925825914",
"104802305120850511148956267361359087363",
"164693556079876496056436632722481150699",
"1912319777024342721491605613291841002"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a925a200299a6dfc7c172f54da6f374edc930053",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-4072dd51",
"target": {
"file": "net/ipv4/fou_core.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"89803552106972963095144740788925825914",
"104802305120850511148956267361359087363",
"164693556079876496056436632722481150699",
"1912319777024342721491605613291841002"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3db4395332e7050ef9ddeb3052e6b5019f2a2a59",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-4f757dd6",
"target": {
"file": "net/ipv4/fou.c",
"function": "gue_gro_receive"
},
"digest": {
"function_hash": "187090122637181831799024103660355955445",
"length": 2267.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b1453a5616c7bd8acd90633ceba4e59105ba3b51",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-7a04d39b",
"target": {
"file": "net/ipv4/fou_core.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"89803552106972963095144740788925825914",
"104802305120850511148956267361359087363",
"164693556079876496056436632722481150699",
"1912319777024342721491605613291841002"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@dd89a81d850fa9a65f67b4527c0e420d15bf836c",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-84ac9b8a",
"target": {
"file": "net/ipv4/fou.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"89803552106972963095144740788925825914",
"104802305120850511148956267361359087363",
"164693556079876496056436632722481150699",
"1912319777024342721491605613291841002"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5a2e37bc648a2503bf6d687aed27b9f4455d82eb",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-a0af2f90",
"target": {
"file": "net/ipv4/fou_core.c",
"function": "gue_gro_receive"
},
"digest": {
"function_hash": "52122346391660383547320691219472961416",
"length": 2176.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@dd89a81d850fa9a65f67b4527c0e420d15bf836c",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-af67b730",
"target": {
"file": "net/ipv4/fou.c",
"function": "gue_gro_receive"
},
"digest": {
"function_hash": "187090122637181831799024103660355955445",
"length": 2267.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a925a200299a6dfc7c172f54da6f374edc930053",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-be143b68",
"target": {
"file": "net/ipv4/fou_core.c",
"function": "gue_gro_receive"
},
"digest": {
"function_hash": "228167537935285893739855646657292852040",
"length": 2174.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3db4395332e7050ef9ddeb3052e6b5019f2a2a59",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-c8727985",
"target": {
"file": "net/ipv4/fou_core.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"89803552106972963095144740788925825914",
"104802305120850511148956267361359087363",
"164693556079876496056436632722481150699",
"1912319777024342721491605613291841002"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@440ab7f97261bc28501636a13998e1b1946d2e79",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-e66dc203",
"target": {
"file": "net/ipv4/fou_core.c",
"function": "gue_gro_receive"
},
"digest": {
"function_hash": "52122346391660383547320691219472961416",
"length": 2176.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@440ab7f97261bc28501636a13998e1b1946d2e79",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-f57c6b6b",
"target": {
"file": "net/ipv4/fou.c",
"function": "gue_gro_receive"
},
"digest": {
"function_hash": "228167537935285893739855646657292852040",
"length": 2174.0
},
"deprecated": false,
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5a2e37bc648a2503bf6d687aed27b9f4455d82eb",
"signature_version": "v1"
},
{
"id": "CVE-2024-44940-fc8ea5ab",
"target": {
"file": "net/ipv4/fou.c"
},
"digest": {
"threshold": 0.9,
"line_hashes": [
"89803552106972963095144740788925825914",
"104802305120850511148956267361359087363",
"164693556079876496056436632722481150699",
"1912319777024342721491605613291841002"
]
},
"deprecated": false,
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b1453a5616c7bd8acd90633ceba4e59105ba3b51",
"signature_version": "v1"
}
]