---
cve: "CVE-2024-27025"
severity: "LOW"
cvss: 3.1
epss: "29%"
vendor: "Linux"
kev: false
exploited: false
published: "2024-05-01 13:15:48"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-08T21:01:21+02:00"
---

# CVE-2024-27025

> 3.1 LOW

## Beschreibung

In the Linux kernel, the following vulnerability has been resolved:

nbd: null check for nla_nest_start

nla_nest_start() may fail and return NULL. Insert a check and set errno
based on other call sites within the same source code.

## Patch verfügbar (OSV)

- Kernel ≥ 5.4.273
- Kernel ≥ 5.10.214
- Kernel ≥ 5.15.153
- Kernel ≥ 6.1.83
- Kernel ≥ 6.6.23
- Kernel ≥ 6.7.11
- Kernel ≥ 6.8.2

## Referenzen

- <https://git.kernel.org/stable/c/44214d744be32a4769faebba764510888f1eb19e>
- <https://git.kernel.org/stable/c/4af837db0fd3679fabc7b7758397090b0c06dced>
- <https://git.kernel.org/stable/c/98e60b538e66c90b9a856828c71d4e975ebfa797>
- <https://git.kernel.org/stable/c/96436365e5d80d0106ea785a4f80a58e7c9edff8>
- <https://git.kernel.org/stable/c/b7f5aed55829f376e4f7e5ea5b80ccdcb023e983>
- <https://git.kernel.org/stable/c/e803040b368d046434fbc8a91945c690332c4fcf>
- <https://git.kernel.org/stable/c/ba6a9970ce9e284cbc04099361c58731e308596a>
- <https://git.kernel.org/stable/c/31edf4bbe0ba27fd03ac7d87eb2ee3d2a231af6d>
- <https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html>
- <https://cert-portal.siemens.com/productcert/html/ssa-265688.html>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-27025) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
