OPTS_SET of the component libbpf. The manipulation of the argument xdp_zc_max_segs results in out-of-bounds read.
This vulnerability is cataloged as CVE-2024-27050. The attack must originate from the local network. There is no exploit available.
The affected component should be upgraded.
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2024-27050 | Linux Kernel up to 6.6.22/6.7.10/6.8.1 libbpf OPTS_SET xdp_zc_max_segs out-of-bounds (Nessus ID 249866 / WID-SEC-2024-1008)
A vulnerability labeled as problematic has been found in Linux Kernel up to 6.6.22/6.7.10/6.8.1. Affected is the function
SOCIAL SHARE CARD GENERATOR