CVE-2024-36974

Updated: 2026-02-27 00:21:17.055106

Description:

In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP If one TCA_TAPRIO_ATTR_PRIOMAP attribute has been provided, taprio_parse_mqprio_opt() must validate it, or userspace can inject arbitrary data to the kernel, the second time taprio_change() is called. First call (with valid attributes) sets dev->num_tc to a non zero value. Second call (with arbitrary mqprio attributes) returns early from taprio_parse_mqprio_opt() and bad things can happen.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 7.8 HIGH Released CLSA-2025:1760546935 2025-10-15 22:27:32 Ignored due to low severity
Ubuntu 16.04 ELS linux 4.4.0 7.8 HIGH Not Vulnerable 2026-02-07 14:33:11 Ignored due to low severity
Ubuntu 18.04 ELS linux 4.15.0 7.8 HIGH Not Vulnerable 2024-09-17 12:27:45