CVE-2024-56637

Source
https://cve.org/CVERecord?id=CVE-2024-56637
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56637.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-56637
Downstream
Related
Published
2024-12-27T15:02:39.876Z
Modified
2026-05-28T03:55:15.703063125Z
Summary
netfilter: ipset: Hold module reference while requesting a module
Details

In the Linux kernel, the following vulnerability has been resolved:

netfilter: ipset: Hold module reference while requesting a module

User space may unload ipset.ko while it is itself requesting a set type backend module, leading to a kernel crash. The race condition may be provoked by inserting an mdelay() right after the nfnlunlock() call.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/56xxx/CVE-2024-56637.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a7b4f989a629493bb4ec4a354def784d440b32c4
Fixed
e5e2d3024753fdaca818b822e3827614bacbdccf
Fixed
6099b5d3e37145484fac4b8b4070c3f1abfb3519
Fixed
0e67805e805c1f3edd6f43adbe08ea14b552694b
Fixed
5bae60a933ba5d16eed55c6b279be51bcbbc79b0
Fixed
90bf312a6b6b3d6012137f6776a4052ee85e0340
Fixed
ba5e070f36682d07ca7ad2a953e6c9d96be19dca
Fixed
456f010bfaefde84d3390c755eedb1b0a5857c3c

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56637.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.39
Fixed
5.4.287
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.231
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.174
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.120
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.66
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.5

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56637.json"