Review reviewHigh

CVE-2024-35898

Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get() nft_unregister_flowtable_type() within nf_flow_inet_module_exit() can concurrent with __nft_flowtable_type_get() within nf_tables_newflowtable(). And thhere is not any protection when iterate over nf_tables_flowtables list in __nft_flowtable_type_get(). Therefore, there is pertential data-race of nf_tables_flowtables list entry. Use list_for_each_entry_rcu() to iterate over nf_tables_flowtables list in __nft_flowtable_type_get(), and use rcu_read_lo...

CVSS
7
EPSS
0.20%
10.3% percentile
CISA KEV
Not listed
Published
2024.05.19
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.20%
Technical severityCVSS 7

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get() nft_unregister_flowtable_type() within nf_flow_inet_module_exit() can concurrent with __nft_flowtable_type_get() within nf_tables_newflowtable(). And thhere is not any protection when iterate over nf_tables_flowtables list in __nft_flowtable_type_get(). Therefore, there is pertential data-race of nf_tables_flowtables list entry. Use list_for_each_entry_rcu() to iterate over nf_tables_flowtables list in __nft_flowtable_type_get(), and use rcu_read_lo...

Affected product and versions

Product
Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel
Affected versions
>= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < 69d1fe14a680042ec913f22196b58e2c8ff1b007, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < a347bc8e6251eaee4b619da28020641eb5b0dd77, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < 940d41caa71f0d3a52df2fde5fada524a993e331, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < 2485bcfe05ee3cf9ca8923a94fa2e456924c79c8, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < 9b5b7708ec2be21dd7ef8ca0e3abe4ae9f3b083b, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < 8b891153b2e4dc0ca9d9dab8f619d49c740813df, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < e684b1674fd1ca4361812a491242ae871d6b2859, >= 3b49e2e94e6ebb8b23d0955d9e898254455734f8 < 24225011d81b471acc0e1e315b7d9905459a6304, >= 4.16, >= 4.16 < 4.19.312, >= 4.20 < 5.4.274, >= 5.5 < 5.10.215, >= 5.11 < 5.15.154, >= 5.16 < 6.1.85, >= 6.2 < 6.6.26, >= 6.7 < 6.8.5, 6.9, 10.0
Fixed versions
4.19.312, 5.4.274, 5.10.215, 5.15.154, 6.1.85, 6.6.26, 6.8.5

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux Linux, SIMATIC S7-1500 TM MFP - GNU/Linux subsystem, linux kernel and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
CWE-362