« List of all CVEs

CVE-2024-0646

Kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination

Published: 1/17/2024 Last updated: 11/6/2025 Reserved: 1/17/2024

An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with a ktls socket as the destination. This flaw allows a local user to crash or potentially escalate their privileges on the system.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Metrics

Version Score Severity Vector String
3.1 7 High CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Opam packages affected (29)

albatross cdrom conf-bpftool conf-libbpf conf-linux-libc-dev core core_unix hvsock mirage-block-unix mm ocaml-probes ortools_solvers orun rawlink rawlink-eio rawlink-lwt restricted shell solo5 solo5-bindings-hvt solo5-bindings-spt solo5-cross-aarch64 solo5-kernel-ukvm tracy-client tuntap uring vhd-format vhd-format-lwt xapi-stdext-unix

Products affected (6)

Product Vendor Version
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat 0.3.0
Red Hat Enterprise Linux 8.4 Telecommunications Update Service Red Hat 0.3.2
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions Red Hat 0.3.3
<6.8
Red Hat Enterprise Linux 8.4 Telecommunications Update Service Red Hat 0.3.1
Red Hat Enterprise Linux 8 Red Hat <6

References (102)