vulnerability
Ubuntu: (Multiple Advisories) (CVE-2024-53141): Linux kernel vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:L/Au:S/C:C/I:C/A:C) | Dec 6, 2024 | Jan 30, 2025 | Apr 29, 2025 |
Severity
7
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
Dec 6, 2024
Added
Jan 30, 2025
Modified
Apr 29, 2025
Description
In the Linux kernel, the following vulnerability has been resolved:
netfilter: ipset: add missing range check in bitmap_ip_uadt
When tb[IPSET_ATTR_IP_TO] is not present but tb[IPSET_ATTR_CIDR] exists,
the values of ip and ip_to are slightly swapped. Therefore, the range check
for ip should be done later, but this part is missing and it seems that the
vulnerability occurs.
So we should add missing range checks and remove unnecessary range checks.
Solutions
ubuntu-upgrade-linux-image-3-13-0-202-genericubuntu-upgrade-linux-image-3-13-0-202-lowlatencyubuntu-upgrade-linux-image-4-15-0-1139-oracleubuntu-upgrade-linux-image-4-15-0-1160-kvmubuntu-upgrade-linux-image-4-15-0-1170-gcpubuntu-upgrade-linux-image-4-15-0-1177-awsubuntu-upgrade-linux-image-4-15-0-1185-azureubuntu-upgrade-linux-image-4-15-0-233-genericubuntu-upgrade-linux-image-4-15-0-233-lowlatencyubuntu-upgrade-linux-image-4-4-0-1140-awsubuntu-upgrade-linux-image-4-4-0-1141-kvmubuntu-upgrade-linux-image-4-4-0-1178-awsubuntu-upgrade-linux-image-4-4-0-263-genericubuntu-upgrade-linux-image-4-4-0-263-lowlatencyubuntu-upgrade-linux-image-5-15-0-1021-nvidia-tegra-igxubuntu-upgrade-linux-image-5-15-0-1021-nvidia-tegra-igx-rtubuntu-upgrade-linux-image-5-15-0-1033-nvidia-tegraubuntu-upgrade-linux-image-5-15-0-1033-nvidia-tegra-rtubuntu-upgrade-linux-image-5-15-0-1044-xilinx-zynqmpubuntu-upgrade-linux-image-5-15-0-1059-gkeopubuntu-upgrade-linux-image-5-15-0-1069-ibmubuntu-upgrade-linux-image-5-15-0-1071-nvidiaubuntu-upgrade-linux-image-5-15-0-1071-nvidia-lowlatencyubuntu-upgrade-linux-image-5-15-0-1071-raspiubuntu-upgrade-linux-image-5-15-0-1072-intel-iotgubuntu-upgrade-linux-image-5-15-0-1073-gkeubuntu-upgrade-linux-image-5-15-0-1073-kvmubuntu-upgrade-linux-image-5-15-0-1074-oracleubuntu-upgrade-linux-image-5-15-0-1075-gcpubuntu-upgrade-linux-image-5-15-0-1077-awsubuntu-upgrade-linux-image-5-15-0-1078-awsubuntu-upgrade-linux-image-5-15-0-1079-azureubuntu-upgrade-linux-image-5-15-0-131-genericubuntu-upgrade-linux-image-5-15-0-131-generic-64kubuntu-upgrade-linux-image-5-15-0-131-generic-lpaeubuntu-upgrade-linux-image-5-15-0-131-lowlatencyubuntu-upgrade-linux-image-5-15-0-131-lowlatency-64kubuntu-upgrade-linux-image-5-4-0-1048-iotubuntu-upgrade-linux-image-5-4-0-1058-xilinx-zynqmpubuntu-upgrade-linux-image-5-4-0-1085-ibmubuntu-upgrade-linux-image-5-4-0-1098-bluefieldubuntu-upgrade-linux-image-5-4-0-1122-raspiubuntu-upgrade-linux-image-5-4-0-1126-kvmubuntu-upgrade-linux-image-5-4-0-1137-oracleubuntu-upgrade-linux-image-5-4-0-1139-awsubuntu-upgrade-linux-image-5-4-0-1142-gcpubuntu-upgrade-linux-image-5-4-0-1143-azureubuntu-upgrade-linux-image-5-4-0-205-genericubuntu-upgrade-linux-image-5-4-0-205-generic-lpaeubuntu-upgrade-linux-image-5-4-0-205-lowlatencyubuntu-upgrade-linux-image-6-11-0-1005-realtimeubuntu-upgrade-linux-image-6-11-0-1008-raspiubuntu-upgrade-linux-image-6-11-0-1009-awsubuntu-upgrade-linux-image-6-11-0-1009-azureubuntu-upgrade-linux-image-6-11-0-1009-azure-fdeubuntu-upgrade-linux-image-6-11-0-1009-gcpubuntu-upgrade-linux-image-6-11-0-1010-lowlatencyubuntu-upgrade-linux-image-6-11-0-1010-lowlatency-64kubuntu-upgrade-linux-image-6-11-0-1011-oracleubuntu-upgrade-linux-image-6-11-0-1011-oracle-64kubuntu-upgrade-linux-image-6-11-0-1015-oemubuntu-upgrade-linux-image-6-11-0-18-genericubuntu-upgrade-linux-image-6-11-0-18-generic-64kubuntu-upgrade-linux-image-6-8-0-1004-gkeopubuntu-upgrade-linux-image-6-8-0-1014-azure-nvidiaubuntu-upgrade-linux-image-6-8-0-1017-gkeubuntu-upgrade-linux-image-6-8-0-1018-raspiubuntu-upgrade-linux-image-6-8-0-1019-ibmubuntu-upgrade-linux-image-6-8-0-1019-oracleubuntu-upgrade-linux-image-6-8-0-1019-oracle-64kubuntu-upgrade-linux-image-6-8-0-1020-oemubuntu-upgrade-linux-image-6-8-0-1021-azureubuntu-upgrade-linux-image-6-8-0-1021-azure-fdeubuntu-upgrade-linux-image-6-8-0-1021-gcpubuntu-upgrade-linux-image-6-8-0-1021-nvidiaubuntu-upgrade-linux-image-6-8-0-1021-nvidia-64kubuntu-upgrade-linux-image-6-8-0-1021-nvidia-lowlatencyubuntu-upgrade-linux-image-6-8-0-1021-nvidia-lowlatency-64kubuntu-upgrade-linux-image-6-8-0-1023-awsubuntu-upgrade-linux-image-6-8-0-52-genericubuntu-upgrade-linux-image-6-8-0-52-generic-64kubuntu-upgrade-linux-image-6-8-0-52-lowlatencyubuntu-upgrade-linux-image-6-8-0-52-lowlatency-64kubuntu-upgrade-linux-image-awsubuntu-upgrade-linux-image-aws-hweubuntu-upgrade-linux-image-aws-lts-18-04ubuntu-upgrade-linux-image-aws-lts-20-04ubuntu-upgrade-linux-image-aws-lts-22-04ubuntu-upgrade-linux-image-aws-lts-24-04ubuntu-upgrade-linux-image-azureubuntu-upgrade-linux-image-azure-cvmubuntu-upgrade-linux-image-azure-fdeubuntu-upgrade-linux-image-azure-lts-18-04ubuntu-upgrade-linux-image-azure-lts-20-04ubuntu-upgrade-linux-image-azure-lts-22-04ubuntu-upgrade-linux-image-azure-nvidiaubuntu-upgrade-linux-image-bluefieldubuntu-upgrade-linux-image-gcpubuntu-upgrade-linux-image-gcp-lts-18-04ubuntu-upgrade-linux-image-gcp-lts-20-04ubuntu-upgrade-linux-image-gcp-lts-22-04ubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-64kubuntu-upgrade-linux-image-generic-64k-hwe-20-04ubuntu-upgrade-linux-image-generic-64k-hwe-22-04ubuntu-upgrade-linux-image-generic-64k-hwe-24-04ubuntu-upgrade-linux-image-generic-hwe-16-04ubuntu-upgrade-linux-image-generic-hwe-18-04ubuntu-upgrade-linux-image-generic-hwe-20-04ubuntu-upgrade-linux-image-generic-hwe-22-04ubuntu-upgrade-linux-image-generic-hwe-24-04ubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-hwe-20-04ubuntu-upgrade-linux-image-generic-lts-trustyubuntu-upgrade-linux-image-generic-lts-xenialubuntu-upgrade-linux-image-gkeubuntu-upgrade-linux-image-gke-5-15ubuntu-upgrade-linux-image-gkeopubuntu-upgrade-linux-image-gkeop-5-15ubuntu-upgrade-linux-image-gkeop-6-8ubuntu-upgrade-linux-image-ibmubuntu-upgrade-linux-image-ibm-classicubuntu-upgrade-linux-image-ibm-lts-20-04ubuntu-upgrade-linux-image-ibm-lts-24-04ubuntu-upgrade-linux-image-intelubuntu-upgrade-linux-image-intel-iotgubuntu-upgrade-linux-image-kvmubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-64kubuntu-upgrade-linux-image-lowlatency-64k-hwe-20-04ubuntu-upgrade-linux-image-lowlatency-64k-hwe-22-04ubuntu-upgrade-linux-image-lowlatency-64k-hwe-24-04ubuntu-upgrade-linux-image-lowlatency-hwe-16-04ubuntu-upgrade-linux-image-lowlatency-hwe-18-04ubuntu-upgrade-linux-image-lowlatency-hwe-20-04ubuntu-upgrade-linux-image-lowlatency-hwe-22-04ubuntu-upgrade-linux-image-lowlatency-hwe-24-04ubuntu-upgrade-linux-image-lowlatency-lts-xenialubuntu-upgrade-linux-image-nvidiaubuntu-upgrade-linux-image-nvidia-6-8ubuntu-upgrade-linux-image-nvidia-64kubuntu-upgrade-linux-image-nvidia-64k-6-8ubuntu-upgrade-linux-image-nvidia-64k-hwe-22-04ubuntu-upgrade-linux-image-nvidia-hwe-22-04ubuntu-upgrade-linux-image-nvidia-lowlatencyubuntu-upgrade-linux-image-nvidia-lowlatency-64kubuntu-upgrade-linux-image-nvidia-tegraubuntu-upgrade-linux-image-nvidia-tegra-igxubuntu-upgrade-linux-image-nvidia-tegra-igx-rtubuntu-upgrade-linux-image-nvidia-tegra-rtubuntu-upgrade-linux-image-oemubuntu-upgrade-linux-image-oem-20-04ubuntu-upgrade-linux-image-oem-20-04bubuntu-upgrade-linux-image-oem-20-04cubuntu-upgrade-linux-image-oem-20-04dubuntu-upgrade-linux-image-oem-22-04ubuntu-upgrade-linux-image-oem-22-04aubuntu-upgrade-linux-image-oem-22-04bubuntu-upgrade-linux-image-oem-22-04cubuntu-upgrade-linux-image-oem-22-04dubuntu-upgrade-linux-image-oem-24-04ubuntu-upgrade-linux-image-oem-24-04aubuntu-upgrade-linux-image-oem-24-04bubuntu-upgrade-linux-image-oem-osp1ubuntu-upgrade-linux-image-oracleubuntu-upgrade-linux-image-oracle-64kubuntu-upgrade-linux-image-oracle-edgeubuntu-upgrade-linux-image-oracle-lts-18-04ubuntu-upgrade-linux-image-oracle-lts-20-04ubuntu-upgrade-linux-image-oracle-lts-22-04ubuntu-upgrade-linux-image-raspiubuntu-upgrade-linux-image-raspi-hwe-18-04ubuntu-upgrade-linux-image-raspi-nolpaeubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-realtimeubuntu-upgrade-linux-image-realtime-hwe-24-04ubuntu-upgrade-linux-image-serverubuntu-upgrade-linux-image-snapdragon-hwe-18-04ubuntu-upgrade-linux-image-virtualubuntu-upgrade-linux-image-virtual-hwe-16-04ubuntu-upgrade-linux-image-virtual-hwe-18-04ubuntu-upgrade-linux-image-virtual-hwe-20-04ubuntu-upgrade-linux-image-virtual-hwe-22-04ubuntu-upgrade-linux-image-virtual-hwe-24-04ubuntu-upgrade-linux-image-virtual-lts-xenialubuntu-upgrade-linux-image-xilinx-zynqmp
References
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.