Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-50185

Опубликовано: 08 нояб. 2024
Источник: redhat
CVSS3: 5.5

Описание

In the Linux kernel, the following vulnerability has been resolved: mptcp: handle consistently DSS corruption Bugged peer implementation can send corrupted DSS options, consistently hitting a few warning in the data path. Use DEBUG_NET assertions, to avoid the splat on some builds and handle consistently the error, dumping related MIBs and performing fallback and/or reset according to the subflow type.

A flaw was found in the kernel. A remote attacker can send malformed Data-path Service Sublayer (DSS) options within MultiPath TCP (MPTCP) connections. This can lead to a denial of service, causing the system to log debugging information and potentially reset or fallback subflows, disrupting network communication.

Меры по смягчению последствий

To mitigate this issue, ensure that the MPTCP kernel module is not loaded. This can be achieved by blacklisting the mptcp module.

  1. Create a file /etc/modprobe.d/blacklist-mptcp.conf with the following content: blacklist mptcp
  2. Regenerate the initramfs:
  • For Red Hat Enterprise Linux 8 and 9: dracut -f -v
  • For Red Hat Enterprise Linux 7: mkinitrd -f -v /boot/initramfs-$(uname -r).img $(uname -r)
  1. Reboot the system for the changes to take effect. This mitigation may impact applications that rely on MPTCP functionality.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernelWill not fix
Red Hat Enterprise Linux 8kernel-rtWill not fix
Red Hat Enterprise Linux 9kernelFix deferred
Red Hat Enterprise Linux 9kernel-rtFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=2324649kernel: mptcp: handle consistently DSS corruption

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 8.2
ubuntu
почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: mptcp: handle consistently DSS corruption Bugged peer implementation can send corrupted DSS options, consistently hitting a few warning in the data path. Use DEBUG_NET assertions, to avoid the splat on some builds and handle consistently the error, dumping related MIBs and performing fallback and/or reset according to the subflow type.

CVSS3: 8.2
nvd
почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: mptcp: handle consistently DSS corruption Bugged peer implementation can send corrupted DSS options, consistently hitting a few warning in the data path. Use DEBUG_NET assertions, to avoid the splat on some builds and handle consistently the error, dumping related MIBs and performing fallback and/or reset according to the subflow type.

CVSS3: 5.5
msrc
7 месяцев назад

mptcp: handle consistently DSS corruption

CVSS3: 8.2
debian
почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: m ...

CVSS3: 5.5
github
почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: mptcp: handle consistently DSS corruption Bugged peer implementation can send corrupted DSS options, consistently hitting a few warning in the data path. Use DEBUG_NET assertions, to avoid the splat on some builds and handle consistently the error, dumping related MIBs and performing fallback and/or reset according to the subflow type.

5.5 Medium

CVSS3

Уязвимость CVE-2024-50185