CVE-2024-35789

Updated: 2025-12-28 03:41:24.833911

Description:

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: check/clear fast rx for non-4addr sta VLAN changes When moving a station out of a VLAN and deleting the VLAN afterwards, the fast_rx entry still holds a pointer to the VLAN's netdev, which can cause use-after-free bugs. Fix this by immediately calling ieee80211_check_fast_rx after the VLAN change.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.8 HIGH Released CLSA-2025:1743193221 2024-10-21 17:42:03
CentOS 6 ELS kernel 2.6.32 7.8 HIGH Ignored 2024-07-02 14:25:03 Ignored due to low severity
CentOS 7 ELS kernel 3.10.0 7.8 HIGH Ignored 2024-07-02 14:25:03 Ignored due to low severity
CentOS 8.4 ELS kernel 4.18.0 7.8 HIGH Ignored 2024-07-09 05:15:08 Ignored due to low severity
CentOS 8.5 ELS kernel 4.18.0 7.8 HIGH Ignored 2024-07-09 05:15:08 Ignored due to low severity
CentOS Stream 8 ELS kernel 4.18.0 7.8 HIGH Ignored 2024-07-03 10:07:14 Ignored due to low severity
CloudLinux 6 ELS kernel 2.6.32 7.8 HIGH Ignored 2024-07-02 14:25:03 Ignored due to low severity
CloudLinux 7 ELS kernel 3.10.0 7.8 HIGH Ignored 2024-08-15 12:09:08 Ignored due to low severity
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Ignored 2024-07-02 17:22:25 Ignored due to low severity
Ubuntu 16.04 ELS linux-hwe 4.15.0 7.8 HIGH Released CLSA-2024:1721664120 2024-07-22 14:23:24
Total: 12