Executive Summary

Informations
Name CVE-2024-26735 First vendor Publication 2024-04-03
Vendor Cve Last vendor Modification 2025-03-17

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Overall CVSS Score 5.5
Base Score 5.5 Environmental Score 5.5
impact SubScore 3.6 Temporal Score 5.5
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

ipv6: sr: fix possible use-after-free and null-ptr-deref

The pernet operations structure for the subsystem must be registered before registering the generic netlink family.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-26735

CWE : Common Weakness Enumeration

% Id Name
50 % CWE-476 NULL Pointer Dereference
50 % CWE-416 Use After Free

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Application 20
Os 1
Os 3646

Sources (Detail)

https://git.kernel.org/stable/c/02b08db594e8218cfbc0e4680d4331b457968a9b
https://git.kernel.org/stable/c/5559cea2d5aa3018a5f00dd2aca3427ba09b386b
https://git.kernel.org/stable/c/65c38f23d10ff79feea1e5d50b76dc7af383c1e6
https://git.kernel.org/stable/c/82831e3ff76ef09fb184eb93b79a3eb3fb284f1d
https://git.kernel.org/stable/c/8391b9b651cfdf80ab0f1dc4a489f9d67386e197
https://git.kernel.org/stable/c/91b020aaa1e59bfb669d34c968e3db3d5416bcee
https://git.kernel.org/stable/c/953f42934533c151f440cd32390044d2396b87aa
https://git.kernel.org/stable/c/9e02973dbc6a91e40aa4f5d87b8c47446fbfce44
https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html
https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html
https://security.netapp.com/advisory/ntap-20241101-0012/
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
Date Informations
2025-03-29 03:35:15
  • Multiple Updates
2025-03-28 13:41:18
  • Multiple Updates
2025-03-28 03:14:20
  • Multiple Updates
2025-03-18 21:22:27
  • Multiple Updates
2025-03-18 00:21:39
  • Multiple Updates
2025-03-17 21:23:12
  • Multiple Updates
2025-02-28 00:21:27
  • Multiple Updates
2024-11-25 09:26:17
  • Multiple Updates
2024-11-05 13:28:00
  • Multiple Updates
2024-10-31 17:28:21
  • Multiple Updates
2024-06-27 17:27:34
  • Multiple Updates
2024-06-26 05:27:35
  • Multiple Updates
2024-04-03 21:27:23
  • First insertion