In the Linux kernel, the following vulnerability has been resolved:
fou: remove warn in guegroreceive on unsupported protocol
Drop the WARNONONCE inn guegroreceive if the encapsulated type is not known or does not have a GRO handler.
Such a packet is easily constructed. Syzbot generates them and sets off this warning.
Remove the warning as it is expected and not actionable.
The warning was previously reduced from WARNON to WARNONONCE in commit 270136613bf7 ("fou: Do WARNONONCE in guegro_receive for bad proto callbacks").
{ "vanir_signatures": [ { "signature_version": "v1", "signature_type": "Line", "target": { "file": "net/ipv4/fou.c" }, "deprecated": false, "digest": { "line_hashes": [ "89803552106972963095144740788925825914", "104802305120850511148956267361359087363", "164693556079876496056436632722481150699", "1912319777024342721491605613291841002" ], "threshold": 0.9 }, "id": "CVE-2024-44940-2358dabb", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a925a200299a6dfc7c172f54da6f374edc930053" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "net/ipv4/fou_core.c" }, "deprecated": false, "digest": { "line_hashes": [ "89803552106972963095144740788925825914", "104802305120850511148956267361359087363", "164693556079876496056436632722481150699", "1912319777024342721491605613291841002" ], "threshold": 0.9 }, "id": "CVE-2024-44940-4072dd51", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3db4395332e7050ef9ddeb3052e6b5019f2a2a59" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "net/ipv4/fou.c", "function": "gue_gro_receive" }, "deprecated": false, "digest": { "length": 2267.0, "function_hash": "187090122637181831799024103660355955445" }, "id": "CVE-2024-44940-4f757dd6", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b1453a5616c7bd8acd90633ceba4e59105ba3b51" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "net/ipv4/fou_core.c" }, "deprecated": false, "digest": { "line_hashes": [ "89803552106972963095144740788925825914", "104802305120850511148956267361359087363", "164693556079876496056436632722481150699", "1912319777024342721491605613291841002" ], "threshold": 0.9 }, "id": "CVE-2024-44940-7a04d39b", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@dd89a81d850fa9a65f67b4527c0e420d15bf836c" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "net/ipv4/fou.c" }, "deprecated": false, "digest": { "line_hashes": [ "89803552106972963095144740788925825914", "104802305120850511148956267361359087363", "164693556079876496056436632722481150699", "1912319777024342721491605613291841002" ], "threshold": 0.9 }, "id": "CVE-2024-44940-84ac9b8a", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5a2e37bc648a2503bf6d687aed27b9f4455d82eb" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "net/ipv4/fou_core.c", "function": "gue_gro_receive" }, "deprecated": false, "digest": { "length": 2176.0, "function_hash": "52122346391660383547320691219472961416" }, "id": "CVE-2024-44940-a0af2f90", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@dd89a81d850fa9a65f67b4527c0e420d15bf836c" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "net/ipv4/fou.c", "function": "gue_gro_receive" }, "deprecated": false, "digest": { "length": 2267.0, "function_hash": "187090122637181831799024103660355955445" }, "id": "CVE-2024-44940-af67b730", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a925a200299a6dfc7c172f54da6f374edc930053" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "net/ipv4/fou_core.c", "function": "gue_gro_receive" }, "deprecated": false, "digest": { "length": 2174.0, "function_hash": "228167537935285893739855646657292852040" }, "id": "CVE-2024-44940-be143b68", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@3db4395332e7050ef9ddeb3052e6b5019f2a2a59" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "net/ipv4/fou_core.c" }, "deprecated": false, "digest": { "line_hashes": [ "89803552106972963095144740788925825914", "104802305120850511148956267361359087363", "164693556079876496056436632722481150699", "1912319777024342721491605613291841002" ], "threshold": 0.9 }, "id": "CVE-2024-44940-c8727985", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@440ab7f97261bc28501636a13998e1b1946d2e79" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "net/ipv4/fou_core.c", "function": "gue_gro_receive" }, "deprecated": false, "digest": { "length": 2176.0, "function_hash": "52122346391660383547320691219472961416" }, "id": "CVE-2024-44940-e66dc203", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@440ab7f97261bc28501636a13998e1b1946d2e79" }, { "signature_version": "v1", "signature_type": "Function", "target": { "file": "net/ipv4/fou.c", "function": "gue_gro_receive" }, "deprecated": false, "digest": { "length": 2174.0, "function_hash": "228167537935285893739855646657292852040" }, "id": "CVE-2024-44940-f57c6b6b", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@5a2e37bc648a2503bf6d687aed27b9f4455d82eb" }, { "signature_version": "v1", "signature_type": "Line", "target": { "file": "net/ipv4/fou.c" }, "deprecated": false, "digest": { "line_hashes": [ "89803552106972963095144740788925825914", "104802305120850511148956267361359087363", "164693556079876496056436632722481150699", "1912319777024342721491605613291841002" ], "threshold": 0.9 }, "id": "CVE-2024-44940-fc8ea5ab", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b1453a5616c7bd8acd90633ceba4e59105ba3b51" } ] }