CVE-2024-38662 - CVE House
Back to Database
Status published Unknown CVE-2024-38662

bpf: Allow delete from sockmap/sockhash only if update is allowed

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: bpf: Allow delete from sockmap/sockhash only if update is allowed We have seen an influx of syzkaller reports where a BPF program attached to a tracepoint triggers a locking rule violation by performing a map_delete on a sockmap/sockhash. We don't intend to support this artificial use scenario. Extend the existing verifier allowed-program-type check for updating sockmap/sockhash to also cover deleting from a map. From now on only BPF programs which were previously allowed to update sockmap/sockhash can delete from these map types.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-38662

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
dd54b48db0c822ae7b520bc80751f0a0a173ef75, d1e73fb19a4c872d7a399ad3c66e8ca30e0875ec, a44770fed86515eedb5a7c00b787f847ebb134a5, 668b3074aa14829e2ac2759799537a93b60fef86, ff91059932401894e6c86341915615c5eb0eca48, f7990498b05ac41f7d6a190dc0418ef1d21bf058, 6af057ccdd8e7619960aca1f0428339f213b31cd, 5.10.215, 5.15.154, 6.1.85, 6.6.26, 5.4.274, 6.8.5, 6.9, 0, 5.10.219, 5.15.161, 6.1.93, 6.6.33, 6.9.4, 6.10

Timeline

Official Publish: June 21st, 2024
Last Modified: May 23rd, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.