CVE-2024-27026

Source
https://cve.org/CVERecord?id=CVE-2024-27026
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-27026.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-27026
Downstream
Related
Published
2024-05-01T12:49:31.685Z
Modified
2026-03-13T07:53:44.122671Z
Summary
vmxnet3: Fix missing reserved tailroom
Details

In the Linux kernel, the following vulnerability has been resolved:

vmxnet3: Fix missing reserved tailroom

Use rbi->len instead of rcd->len for non-dataring packet.

Found issue: XDPWARN: xdpupdateframefrombuff(line:278): Driver BUG: missing reserved tailroom WARNING: CPU: 0 PID: 0 at net/core/xdp.c:586 xdpwarn+0xf/0x20 CPU: 0 PID: 0 Comm: swapper/0 Tainted: G W O 6.5.1 #1 RIP: 0010:xdpwarn+0xf/0x20 ... ? xdpwarn+0xf/0x20 xdpdoredirect+0x15f/0x1c0 vmxnet3runxdp+0x17a/0x400 [vmxnet3] vmxnet3processxdp+0xe4/0x760 [vmxnet3] ? vmxnet3tqtxcomplete.isra.0+0x21e/0x2c0 [vmxnet3] vmxnet3rqrxcomplete+0x7ad/0x1120 [vmxnet3] vmxnet3pollrx_only+0x2d/0xa0 [vmxnet3] _napipoll+0x20/0x180 netrxaction+0x177/0x390

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/27xxx/CVE-2024-27026.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
54f00cce11786742bd11e5e68c3bf85e6dc048c9
Fixed
aba8659caf88017507419feea06069f529329ea6
Fixed
7c8505ecc2d15473d679b8e06335434b84fffe86
Fixed
91d017d19d5a9ad153e2dc23ed3c0e2e79ef5262
Fixed
e127ce7699c1e05279ee5ee61f00893e7bfa9671

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-27026.json"