Intelligence View
⚡ tsecurity.de Intelligence
CVE-2024-36948 | Linux Kernel up to 6.8.9 xe_migrate buffer overflow (e23a904dfeb5/9cb46b31f3d0)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.8.9. This vulnerability affects unknown code of the component xe_migrate.…
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.8.9. This vulnerability affects unknown code of the component xe_migrate. The manipulation results in buffer overflow.
This vulnerability is known as CVE-2024-36948. Access to the local network is required for this attack. No exploit is available.
It is advisable to upgrade the affected component.
This vulnerability is known as CVE-2024-36948. Access to the local network is required for this attack. No exploit is available.
It is advisable to upgrade the affected component.
Cyber Threat Intelligence & Forensik
ATT&CK-Navigator · IoC-Radar · Exploit-Belege
Compliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
BSI-Warnung (Deutschland)CVE-2024-36948
Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service und unspezifischen Angriff30.05.2024CISA-SSVC-Triage (vulnrichment)CVE-2024-36948
Exploitation: none (Keine bekannte Ausnutzung)Automatable: no (Nicht automatisierbar)Technical Impact: partial (Teilweise)
Quelle: CISA-ADP vulnrichment · Stand 2024-09-10T17:15:41.742361Z · CISA Coordinator
Advisory Radar
Offizielles Hersteller-Update verfügbar
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller hat ein verifiziertes Patch-Release herausgegeben. Sofortiges Rollout auf Test- und Produktivsystemen empfohlen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Linux Kernel Git Commit Verifiziertkernel.org
-
Linux Kernel Git Commit Verifiziertkernel.org