xsk_setsockopt in the library lib/dump_stack.c of the file include/linux/sockptr.h. Executing a manipulation can lead to out-of-bounds read.
This vulnerability is tracked as CVE-2024-35976. The attack is only possible within the local network. No exploit exists.
It is advisable to upgrade the affected component.
Intelligence View
⚡ tsecurity.de Intelligence
CVE-2024-35976 | Linux Kernel up to 6.8.6 on XDP_ include/linux/sockptr.h xsk_setsockopt out-of-bounds (Nessus ID 212625)
A vulnerability categorized as problematic has been discovered in Linux Kernel up to 5.10.215/5.15.155/6.1.86/6.6.27/6.8.6 on XDP_. This impacts the function
SOCIAL SHARE CARD GENERATOR