CVE-2024-44985 - CVE House
Back to Database
Status published Unknown CVE-2024-44985

ipv6: prevent possible UAF in ip6_xmit()

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: ipv6: prevent possible UAF in ip6_xmit() If skb_expand_head() returns NULL, skb has been freed and the associated dst/idev could also have been freed. We must use rcu_read_lock() to prevent a possible UAF.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-44985

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Linux
Vulnerable Versions:
81d626b00bdba16504eeae9cc891b18e83a9471a, ee6b1db17f8287b615448488fc37f42bcfe9ece6, 0c9f227bee11910a49e1d159abe102d06e3745d5, 5.15, 0, 5.15.166, 6.1.107, 6.6.48, 6.10.7, 6.11

Timeline

Official Publish: September 4th, 2024
Last Modified: May 11th, 2026
Added to House: July 22nd, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.