THREATOPS
THREAT OPSThreat News › [NVD] CVE-2024-0646 (HIGH 7.0) — An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with a ktls socket as the destination. This flaw allows a local user to crash or potentially escalate their privileges on the system.

[NVD] CVE-2024-0646 (HIGH 7.0) — An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with a ktls socket as the destination. This flaw allows a local user to crash or potentially escalate their privileges on the system.

lownvdPublished 2024-01-17

CVE-2024-0646 CVSS: 7.0 HIGH Published: 2024-01-17T16:15:47.190

An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with a ktls socket as the destination. This flaw allows a local user to crash or potentially escalate their privileges on the system.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-0646