CVE-2024-39494

HIGH EPSS 22.2%
Published Jul 12, 20241y ago · Modified Jun 17, 20262w ago
7.8 CVSS 3.1
High
Find Similar
Published Jul 12, 2024 1y ago
Last Modified Jun 17, 2026 2w ago

Description

In the Linux kernel, the following vulnerability has been resolved: ima: Fix use-after-free on a dentry's dname.name ->d_name.name can change on rename and the earlier value can be freed; there are conditions sufficient to stabilize it (->d_lock on dentry, ->d_lock on its parent, ->i_rwsem exclusive on the parent's inode, rename_lock), but none of those are met at any of the sites. Take a stable snapshot of the name instead.

CVSS Details

Base Score
7.8
Exploitability
1.8
Impact
5.9
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
22.2% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-416 Use After Free Memory Safety

Affected Products 7

VendorProductVersionRange
debiandebian_linux11.0any
linuxlinux_kernel*≥3.19  –  <5.4.291
linuxlinux_kernel*≥5.5  –  <5.10.235
linuxlinux_kernel*≥5.11  –  <5.15.174
linuxlinux_kernel*≥5.16  –  <6.1.97
linuxlinux_kernel*≥6.2  –  <6.6.35
linuxlinux_kernel*≥6.7  –  <6.9.6

References 9

  • git.kernel.org https://git.kernel.org/stable/c/0b31e28fbd773aefb6164687e0767319b8199829
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/480afcbeb7aaaa22677d3dd48ec590b441eaac1a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7fb374981e31c193b1152ed8d3b0a95b671330d4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a78a6f0da57d058e2009e9958fdcef66f165208c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/be84f32bb2c981ca670922e047cdde1488b233de
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/dd431c3ac1fc34a9268580dd59ad3e3c76b32a8c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/edf287bc610b18d7a9c0c0c1cb2e97b9348c71bb
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
    Mailing ListThird Party Advisory
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/05/msg00030.html
    Mailing ListThird Party Advisory

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/0b31e28fbd773aefb6164687e0767319b8199829
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/480afcbeb7aaaa22677d3dd48ec590b441eaac1a
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7fb374981e31c193b1152ed8d3b0a95b671330d4
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a78a6f0da57d058e2009e9958fdcef66f165208c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/be84f32bb2c981ca670922e047cdde1488b233de
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/dd431c3ac1fc34a9268580dd59ad3e3c76b32a8c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/edf287bc610b18d7a9c0c0c1cb2e97b9348c71bb
    Patch