In the Linux kernel, the following vulnerability has been resolved:
net: inet6: do not leave a dangling sk pointer in inet6_create()
sockinitdata() attaches the allocated sk pointer to the provided sock object. If inet6_create() fails later, the sk object is released, but the sock object retains the dangling sk pointer, which may cause use-after-free later.
Clear the sock sk pointer on error.
[
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"1645759656247343819965228770245094554",
"15032172165569420389138842003096578601",
"94196277495474780502580467586212688898",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"156116635674053235241368217718803546492",
"30598990978814734894761210860639258162",
"134799668830152082847293825483294648712",
"226330329984723294893071652960967233658",
"279498248213085552659192648000042459318",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"10604716443879236869646081524051810785",
"332607131942570719375672374514384826173",
"52933841757243123156999793500485122340",
"283437343186612655921934159074136378610",
"96245447294742051462886248290461159717",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"109388128052665260361439665827095668367",
"319006989805338926477200904854121024136",
"22710687377390316962075731360513372629",
"44266046448060408779031208463827506188",
"77662536059547782183222510558689294664",
"238926392122160158886781918090294393900",
"144780614303565632957385098438332594506",
"80306737589398469558294084307259207100"
]
},
"id": "CVE-2024-56600-195256c9",
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@276a473c956fb55a6f3affa9ff232e10fffa7b43",
"target": {
"file": "net/ipv6/af_inet6.c"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"1645759656247343819965228770245094554",
"15032172165569420389138842003096578601",
"94196277495474780502580467586212688898",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"156116635674053235241368217718803546492",
"30598990978814734894761210860639258162",
"134799668830152082847293825483294648712",
"226330329984723294893071652960967233658",
"279498248213085552659192648000042459318",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"10604716443879236869646081524051810785",
"332607131942570719375672374514384826173",
"52933841757243123156999793500485122340",
"283437343186612655921934159074136378610",
"96245447294742051462886248290461159717",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"109388128052665260361439665827095668367",
"319006989805338926477200904854121024136",
"22710687377390316962075731360513372629",
"44266046448060408779031208463827506188",
"77662536059547782183222510558689294664",
"238926392122160158886781918090294393900",
"144780614303565632957385098438332594506",
"80306737589398469558294084307259207100"
]
},
"id": "CVE-2024-56600-199a60f3",
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@706b07b7b37f886423846cb38919132090bc40da",
"target": {
"file": "net/ipv6/af_inet6.c"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 2743.0,
"function_hash": "32532130019423178279310721126047484928"
},
"id": "CVE-2024-56600-2a3d41e6",
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f2709d1271cfdf55c670ab5c5982139ab627ddc7",
"target": {
"file": "net/ipv6/af_inet6.c",
"function": "inet6_create"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 2806.0,
"function_hash": "269351646588959761775608592112965440785"
},
"id": "CVE-2024-56600-33fc3447",
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@276a473c956fb55a6f3affa9ff232e10fffa7b43",
"target": {
"file": "net/ipv6/af_inet6.c",
"function": "inet6_create"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"1645759656247343819965228770245094554",
"15032172165569420389138842003096578601",
"94196277495474780502580467586212688898",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"156116635674053235241368217718803546492",
"30598990978814734894761210860639258162",
"134799668830152082847293825483294648712",
"226330329984723294893071652960967233658",
"279498248213085552659192648000042459318",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"10604716443879236869646081524051810785",
"332607131942570719375672374514384826173",
"52933841757243123156999793500485122340",
"283437343186612655921934159074136378610",
"96245447294742051462886248290461159717",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"109388128052665260361439665827095668367",
"319006989805338926477200904854121024136",
"22710687377390316962075731360513372629",
"44266046448060408779031208463827506188",
"77662536059547782183222510558689294664",
"238926392122160158886781918090294393900",
"144780614303565632957385098438332594506",
"80306737589398469558294084307259207100"
]
},
"id": "CVE-2024-56600-8a6776be",
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f44fceb71d72d29fb00e0ac84cdf9c081b03cd06",
"target": {
"file": "net/ipv6/af_inet6.c"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"1645759656247343819965228770245094554",
"15032172165569420389138842003096578601",
"94196277495474780502580467586212688898",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"156116635674053235241368217718803546492",
"30598990978814734894761210860639258162",
"134799668830152082847293825483294648712",
"226330329984723294893071652960967233658",
"279498248213085552659192648000042459318",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"10604716443879236869646081524051810785",
"332607131942570719375672374514384826173",
"52933841757243123156999793500485122340",
"283437343186612655921934159074136378610",
"96245447294742051462886248290461159717",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"109388128052665260361439665827095668367",
"319006989805338926477200904854121024136",
"22710687377390316962075731360513372629",
"44266046448060408779031208463827506188",
"77662536059547782183222510558689294664",
"238926392122160158886781918090294393900",
"144780614303565632957385098438332594506",
"41123125337971530700155670813523161133"
]
},
"id": "CVE-2024-56600-b807b69d",
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f2709d1271cfdf55c670ab5c5982139ab627ddc7",
"target": {
"file": "net/ipv6/af_inet6.c"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 2904.0,
"function_hash": "77503372838501277054845594458806904234"
},
"id": "CVE-2024-56600-c5a4d679",
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f44fceb71d72d29fb00e0ac84cdf9c081b03cd06",
"target": {
"file": "net/ipv6/af_inet6.c",
"function": "inet6_create"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"1645759656247343819965228770245094554",
"15032172165569420389138842003096578601",
"94196277495474780502580467586212688898",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"156116635674053235241368217718803546492",
"30598990978814734894761210860639258162",
"134799668830152082847293825483294648712",
"226330329984723294893071652960967233658",
"279498248213085552659192648000042459318",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"10604716443879236869646081524051810785",
"332607131942570719375672374514384826173",
"52933841757243123156999793500485122340",
"283437343186612655921934159074136378610",
"96245447294742051462886248290461159717",
"16066910106425491170984666037832690155",
"97029996644919869753970377261672592731",
"109388128052665260361439665827095668367",
"319006989805338926477200904854121024136",
"22710687377390316962075731360513372629",
"44266046448060408779031208463827506188",
"77662536059547782183222510558689294664",
"238926392122160158886781918090294393900",
"144780614303565632957385098438332594506",
"80306737589398469558294084307259207100"
]
},
"id": "CVE-2024-56600-d44be84c",
"signature_type": "Line",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9df99c395d0f55fb444ef39f4d6f194ca437d884",
"target": {
"file": "net/ipv6/af_inet6.c"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 2874.0,
"function_hash": "88974924826592038861202197568621616241"
},
"id": "CVE-2024-56600-d602e939",
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@706b07b7b37f886423846cb38919132090bc40da",
"target": {
"file": "net/ipv6/af_inet6.c",
"function": "inet6_create"
}
},
{
"deprecated": false,
"signature_version": "v1",
"digest": {
"length": 2904.0,
"function_hash": "77503372838501277054845594458806904234"
},
"id": "CVE-2024-56600-d77661fd",
"signature_type": "Function",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@9df99c395d0f55fb444ef39f4d6f194ca437d884",
"target": {
"file": "net/ipv6/af_inet6.c",
"function": "inet6_create"
}
}
]