CVE-2024-57974

udp: Deal with race between UDP socket address change and rehash

References

Notes

 carnil> Introduced in 30fff9231fad ("udp: bind() optimisation"). Vulnerable versions:
 carnil> 2.6.33-rc1.

Bugs

Status

Branch Status
upstream released (6.14-rc1) [a502ea6fa94b1f7be72a24bcf9e3f5f6b7e6e90c]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.13-upstream-stable released (6.13.2) [d65d3bf309b2649d27b24efd0d8784da2d81f2a6]
6.12-upstream-stable released (6.12.13) [4f8344fce91c5766d368edb0ad80142eacd805c7]
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.12.13-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed