Review reviewHigh

CVE-2024-50301

Linux Linux, RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family

In the Linux kernel, the following vulnerability has been resolved: security/keys: fix slab-out-of-bounds in key_task_permission KASAN reports an out of bounds read: BUG: KASAN: slab-out-of-bounds in __kuid_val include/linux/uidgid.h:36 BUG: KASAN: slab-out-of-bounds in uid_eq include/linux/uidgid.h:63 [inline] BUG: KASAN: slab-out-of-bounds in key_task_permission+0x394/0x410 security/keys/permission.c:54 Read of size 4 at addr ffff88813c3ab618 by task stress-ng/4362 CPU: 2 PID: 4362 Comm: stress-ng Not tainted 5.10.0-14930-gafbffd6c3ede #15 Call Trace: __dump_stack lib/dump_stack.c:82 [inl...

CVSS
7.1
EPSS
-
- percentile
CISA KEV
Not listed
Published
2024.11.19
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability-
Technical severityCVSS 7.1

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: security/keys: fix slab-out-of-bounds in key_task_permission KASAN reports an out of bounds read: BUG: KASAN: slab-out-of-bounds in __kuid_val include/linux/uidgid.h:36 BUG: KASAN: slab-out-of-bounds in uid_eq include/linux/uidgid.h:63 [inline] BUG: KASAN: slab-out-of-bounds in key_task_permission+0x394/0x410 security/keys/permission.c:54 Read of size 4 at addr ffff88813c3ab618 by task stress-ng/4362 CPU: 2 PID: 4362 Comm: stress-ng Not tainted 5.10.0-14930-gafbffd6c3ede #15 Call Trace: __dump_stack lib/dump_stack.c:82 [inl...

Affected product and versions

Product
Linux Linux, RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family
Affected versions
>= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < c3ce634ad953ce48c75c39bdfd8b711dd95f346f, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < 4efb69a0e294ef201bcdf7ce3d6202cd0a545a5d, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < 1e4332581cd4eed75aea77af6f66cdcdda8b49b9, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < 199c20fb7499c79557a075dc24e9a7dae7d9f1ce, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < bbad2d5b6c99db468d8f88b6ba6a56ed409b4881, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < 3e79ad156bedf2da0ab909a118d2cec6c9c22b79, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < e0a317ad68e4ea48a0158187238c5407e4fdec8b, >= b2a4df200d570b2c33a57e1ebfa5896e4bc81b69 < 4a74da044ec9ec8679e6beccc4306b936b62873f, >= 3.13, < V3.2, >= V3.1.0 < V3.1.5, >= 3.13 < 4.19.324, >= 4.20 < 5.4.286, >= 5.5 < 5.10.230, >= 5.11 < 5.15.172, >= 5.16 < 6.1.117, >= 6.2 < 6.6.61, >= 6.7 < 6.11.8, 6.12
Fixed versions
4.19.324, 5.4.286, 5.10.230, 5.15.172, 6.1.117, 6.6.61, 6.11.8

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux Linux, RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
CWE
CWE-125
CVE-2024-50301 — Linux Linux, RUGGEDCOM RST2428P, SCALANCE XC-300/XR-300/XC-400/XR-500WG/XR-500 family | SECUFOCUS NOW