[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2024-56614":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T20:55:29.923Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":130,"related":131,"reserved_at":9,"published_at":146,"modified_at":147,"state":148,"summary":149,"references_raw":158,"kevs":185,"epss":186,"epss_history":189,"metrics":455,"affected":463},"CVE-2024-56614","In the Linux kernel, the following vulnerability has been resolved:\n\nxsk: fix OOB map writes when deleting elements\n\nJordy says:\n\n\"\nIn the xsk_map_delete_elem function an unsigned integer\n(map->max_entries) is compared with a user-controlled signed integer\n(k). Due to implicit type conversion, a large unsigned value for\nmap->max_entries can bypass the intended bounds check:\n\n\tif (k >= map->max_entries)\n\t\treturn -EINVAL;\n\nThis allows k to hold a negative value (between -2147483648 and -2),\nwhich is then used as an array index in m->xsk_map[k], which results\nin an out-of-bounds access.\n\n\tspin_lock_bh(&m->lock);\n\tmap_entry = &m->xsk_map[k]; // Out-of-bounds map_entry\n\told_xs = unrcu_pointer(xchg(map_entry, NULL));  // Oob write\n\tif (old_xs)\n\t\txsk_map_sock_delete(old_xs, map_entry);\n\tspin_unlock_bh(&m->lock);\n\nThe xchg operation can then be used to cause an out-of-bounds write.\nMoreover, the invalid map_entry passed to xsk_map_sock_delete can lead\nto further memory corruption.\n\"\n\nIt indeed results in following splat:\n\n[76612.897343] BUG: unable to handle page fault for address: ffffc8fc2e461108\n[76612.904330] #PF: supervisor write access in kernel mode\n[76612.909639] #PF: error_code(0x0002) - not-present page\n[76612.914855] PGD 0 P4D 0\n[76612.917431] Oops: Oops: 0002 [#1] PREEMPT SMP\n[76612.921859] CPU: 11 UID: 0 PID: 10318 Comm: a.out Not tainted 6.12.0-rc1+ #470\n[76612.929189] Hardware name: Intel Corporation S2600WFT/S2600WFT, BIOS SE5C620.86B.02.01.0008.031920191559 03/19/2019\n[76612.939781] RIP: 0010:xsk_map_delete_elem+0x2d/0x60\n[76612.944738] Code: 00 00 41 54 55 53 48 63 2e 3b 6f 24 73 38 4c 8d a7 f8 00 00 00 48 89 fb 4c 89 e7 e8 2d bf 05 00 48 8d b4 eb 00 01 00 00 31 ff \u003C48> 87 3e 48 85 ff 74 05 e8 16 ff ff ff 4c 89 e7 e8 3e bc 05 00 31\n[76612.963774] RSP: 0018:ffffc9002e407df8 EFLAGS: 00010246\n[76612.969079] RAX: 0000000000000000 RBX: ffffc9002e461000 RCX: 0000000000000000\n[76612.976323] RDX: 0000000000000001 RSI: ffffc8fc2e461108 RDI: 0000000000000000\n[76612.983569] RBP: ffffffff80000001 R08: 0000000000000000 R09: 0000000000000007\n[76612.990812] R10: ffffc9002e407e18 R11: ffff888108a38858 R12: ffffc9002e4610f8\n[76612.998060] R13: ffff888108a38858 R14: 00007ffd1ae0ac78 R15: ffffc9002e4610c0\n[76613.005303] FS:  00007f80b6f59740(0000) GS:ffff8897e0ec0000(0000) knlGS:0000000000000000\n[76613.013517] CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033\n[76613.019349] CR2: ffffc8fc2e461108 CR3: 000000011e3ef001 CR4: 00000000007726f0\n[76613.026595] DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000\n[76613.033841] DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400\n[76613.041086] PKRU: 55555554\n[76613.043842] Call Trace:\n[76613.046331]  \u003CTASK>\n[76613.048468]  ? __die+0x20/0x60\n[76613.051581]  ? page_fault_oops+0x15a/0x450\n[76613.055747]  ? search_extable+0x22/0x30\n[76613.059649]  ? search_bpf_extables+0x5f/0x80\n[76613.063988]  ? exc_page_fault+0xa9/0x140\n[76613.067975]  ? asm_exc_page_fault+0x22/0x30\n[76613.072229]  ? xsk_map_delete_elem+0x2d/0x60\n[76613.076573]  ? xsk_map_delete_elem+0x23/0x60\n[76613.080914]  __sys_bpf+0x19b7/0x23c0\n[76613.084555]  __x64_sys_bpf+0x1a/0x20\n[76613.088194]  do_syscall_64+0x37/0xb0\n[76613.091832]  entry_SYSCALL_64_after_hwframe+0x4b/0x53\n[76613.096962] RIP: 0033:0x7f80b6d1e88d\n[76613.100592] Code: 5b 41 5c c3 66 0f 1f 84 00 00 00 00 00 f3 0f 1e fa 48 89 f8 48 89 f7 48 89 d6 48 89 ca 4d 89 c2 4d 89 c8 4c 8b 4c 24 08 0f 05 \u003C48> 3d 01 f0 ff ff 73 01 c3 48 8b 0d 73 b5 0f 00 f7 d8 64 89 01 48\n[76613.119631] RSP: 002b:00007ffd1ae0ac68 EFLAGS: 00000206 ORIG_RAX: 0000000000000141\n[76613.131330] RAX: ffffffffffffffda RBX: 0000000000000000 RCX: 00007f80b6d1e88d\n[76613.142632] RDX: 0000000000000098 RSI: 00007ffd1ae0ad20 RDI: 0000000000000003\n[76613.153967] RBP: 00007ffd1ae0adc0 R08: 0000000000000000 R09: 0000000000000000\n[76613.166030] R10: 00007f80b6f77040 R11: 0000000000000206 R12: 00007ffd1ae0aed8\n[76613.177130] R13: 000055ddf42ce1e9 R14: 000055ddf42d0d98 R15: 00\n---truncated---",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-787","Out-of-bounds Write","The product writes data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base","High",[],[],[],[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102,104,106,108,110,112,114,116,118,120,122,124,126,128],{"_key":25},"SUSE-SU-2025:0289-1",{"_key":27},"SUSE-SU-2025:0428-1",{"_key":29},"SUSE-SU-2025:0499-1",{"_key":31},"SUSE-SU-2025:0557-1",{"_key":33},"DLA-4076-1",{"_key":35},"RHSA-2025:10536",{"_key":37},"RHSA-2025:10547",{"_key":39},"SUSE-SU-2025:20165-1",{"_key":41},"SUSE-SU-2025:20166-1",{"_key":43},"SUSE-SU-2025:20248-1",{"_key":45},"SUSE-SU-2025:20249-1",{"_key":47},"MGASA-2025-0030",{"_key":49},"MGASA-2025-0032",{"_key":51},"DEBIAN-CVE-2024-56614",{"_key":53},"RHSA-2025:10701",{"_key":55},"RHSA-2025:6966",{"_key":57},"UBUNTU-CVE-2024-56614",{"_key":59},"USN-7379-1",{"_key":61},"USN-7381-1",{"_key":63},"USN-7382-1",{"_key":65},"USN-7383-1",{"_key":67},"USN-7383-2",{"_key":69},"USN-7384-1",{"_key":71},"USN-7384-2",{"_key":73},"USN-7385-1",{"_key":75},"USN-7386-1",{"_key":77},"USN-7387-1",{"_key":79},"USN-7387-2",{"_key":81},"USN-7387-3",{"_key":83},"USN-7388-1",{"_key":85},"USN-7389-1",{"_key":87},"USN-7390-1",{"_key":89},"USN-7391-1",{"_key":91},"USN-7392-1",{"_key":93},"USN-7392-2",{"_key":95},"USN-7392-3",{"_key":97},"USN-7392-4",{"_key":99},"USN-7393-1",{"_key":101},"USN-7401-1",{"_key":103},"USN-7403-1",{"_key":105},"USN-7407-1",{"_key":107},"USN-7413-1",{"_key":109},"USN-7421-1",{"_key":111},"USN-7451-1",{"_key":113},"USN-7458-1",{"_key":115},"USN-7459-1",{"_key":117},"USN-7459-2",{"_key":119},"USN-7463-1",{"_key":121},"USN-7468-1",{"_key":123},"USN-7523-1",{"_key":125},"USN-7524-1",{"_key":127},"USN-7539-1",{"_key":129},"USN-7540-1",[],[132,133,135,137,138,139,140,141,142,143,144,145],{"_key":25},{"_key":134},"USN-7379-2",{"_key":136},"USN-7380-1",{"_key":27},{"_key":29},{"_key":31},{"_key":39},{"_key":41},{"_key":43},{"_key":45},{"_key":47},{"_key":49},"2024-12-27T14:51:19.154Z","2026-05-11T20:55:52.282Z","Modified",{"cisa_kev":150,"cisa_ransomware":150,"cisa_vendor":9,"epss_severity":151,"epss_score":152,"severity":153,"severity_score":154,"severity_version":155,"severity_source":156,"severity_vector":157,"severity_status":148},false,"low",0.00009,"high",7.8,"v3.1","cve.org","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",[159,165,169,173,177,181],{"url":160,"sources":161,"tags":163},"https://git.kernel.org/stable/c/4d03f705e9d7aabebc6bfa5810f8aab6d176cbb7",[156,162],"nvd",[164],"Patch",{"url":166,"sources":167,"tags":168},"https://git.kernel.org/stable/c/ed08c93d5a9801cc8f224a046411fd603c538d07",[156,162],[164],{"url":170,"sources":171,"tags":172},"https://git.kernel.org/stable/c/f8abd03f83d5fe81e76eb93e2c4373eb9f75fd8a",[156,162],[164],{"url":174,"sources":175,"tags":176},"https://git.kernel.org/stable/c/d486b5741d987d3e0e6be4ac22cafdf94e6d1a47",[156,162],[164],{"url":178,"sources":179,"tags":180},"https://git.kernel.org/stable/c/32cd3db7de97c0c7a018756ce66244342fd583f0",[156,162],[164],{"url":182,"sources":183,"tags":184},"https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html",[156,162],[],[],{"date":187,"score":152,"percentile":188},"2026-06-04",0.00924,[190,194,197,200,203,206,209,212,215,218,221,224,226,229,232,236,239,242,245,248,251,254,257,260,263,266,269,272,275,278,281,283,286,288,291,294,297,300,303,306,309,312,315,317,320,323,326,329,332,335,338,341,344,347,350,353,356,359,362,365,368,371,374,377,380,383,386,389,392,395,398,401,403,406,409,412,415,418,421,424,427,429,431,434,437,440,443,446,449,452],{"date":191,"score":192,"percentile":193},"2025-11-04",0.00064,0.20228,{"date":195,"score":192,"percentile":196},"2025-11-05",0.20236,{"date":198,"score":192,"percentile":199},"2025-11-06",0.20238,{"date":201,"score":192,"percentile":202},"2025-11-07",0.20248,{"date":204,"score":192,"percentile":205},"2025-11-08",0.20254,{"date":207,"score":192,"percentile":208},"2025-11-09",0.20223,{"date":210,"score":192,"percentile":211},"2025-11-10",0.20187,{"date":213,"score":192,"percentile":214},"2025-11-11",0.20202,{"date":216,"score":192,"percentile":217},"2025-11-12",0.20245,{"date":219,"score":192,"percentile":220},"2025-11-13",0.20259,{"date":222,"score":192,"percentile":223},"2025-11-14",0.20246,{"date":225,"score":192,"percentile":208},"2025-11-15",{"date":227,"score":192,"percentile":228},"2025-11-16",0.20174,{"date":230,"score":192,"percentile":231},"2025-11-17",0.20104,{"date":233,"score":234,"percentile":235},"2025-11-18",0.00106,0.24464,{"date":237,"score":234,"percentile":238},"2025-11-19",0.2449,{"date":240,"score":234,"percentile":241},"2025-11-20",0.24502,{"date":243,"score":192,"percentile":244},"2025-11-21",0.20069,{"date":246,"score":192,"percentile":247},"2025-11-22",0.20067,{"date":249,"score":192,"percentile":250},"2025-11-23",0.20029,{"date":252,"score":192,"percentile":253},"2025-11-24",0.20006,{"date":255,"score":192,"percentile":256},"2025-11-25",0.19996,{"date":258,"score":192,"percentile":259},"2025-11-26",0.19988,{"date":261,"score":192,"percentile":262},"2025-11-27",0.19985,{"date":264,"score":192,"percentile":265},"2025-11-28",0.19969,{"date":267,"score":192,"percentile":268},"2025-11-29",0.19954,{"date":270,"score":192,"percentile":271},"2025-11-30",0.19952,{"date":273,"score":192,"percentile":274},"2025-12-01",0.19992,{"date":276,"score":192,"percentile":277},"2025-12-02",0.20015,{"date":279,"score":192,"percentile":280},"2025-12-03",0.2003,{"date":282,"score":192,"percentile":259},"2025-12-04",{"date":284,"score":192,"percentile":285},"2025-12-05",0.20032,{"date":287,"score":192,"percentile":280},"2025-12-06",{"date":289,"score":192,"percentile":290},"2025-12-07",0.20013,{"date":292,"score":192,"percentile":293},"2025-12-08",0.20033,{"date":295,"score":192,"percentile":296},"2025-12-09",0.20101,{"date":298,"score":192,"percentile":299},"2025-12-10",0.2017,{"date":301,"score":192,"percentile":302},"2025-12-11",0.20205,{"date":304,"score":192,"percentile":305},"2025-12-12",0.20227,{"date":307,"score":192,"percentile":308},"2025-12-13",0.20233,{"date":310,"score":192,"percentile":311},"2025-12-14",0.20191,{"date":313,"score":192,"percentile":314},"2025-12-15",0.20172,{"date":316,"score":192,"percentile":214},"2025-12-16",{"date":318,"score":192,"percentile":319},"2025-12-17",0.20284,{"date":321,"score":192,"percentile":322},"2025-12-18",0.20372,{"date":324,"score":192,"percentile":325},"2025-12-19",0.20393,{"date":327,"score":192,"percentile":328},"2025-12-20",0.2037,{"date":330,"score":192,"percentile":331},"2025-12-21",0.20318,{"date":333,"score":192,"percentile":334},"2025-12-22",0.20279,{"date":336,"score":192,"percentile":337},"2025-12-23",0.20278,{"date":339,"score":192,"percentile":340},"2025-12-24",0.20312,{"date":342,"score":192,"percentile":343},"2025-12-25",0.20398,{"date":345,"score":192,"percentile":346},"2025-12-26",0.20391,{"date":348,"score":192,"percentile":349},"2025-12-27",0.20387,{"date":351,"score":192,"percentile":352},"2025-12-28",0.2035,{"date":354,"score":192,"percentile":355},"2025-12-29",0.20306,{"date":357,"score":192,"percentile":358},"2025-12-30",0.20293,{"date":360,"score":192,"percentile":361},"2025-12-31",0.20348,{"date":363,"score":192,"percentile":364},"2026-01-01",0.20444,{"date":366,"score":192,"percentile":367},"2026-01-02",0.20448,{"date":369,"score":192,"percentile":370},"2026-01-03",0.20435,{"date":372,"score":192,"percentile":373},"2026-01-04",0.20341,{"date":375,"score":192,"percentile":376},"2026-01-05",0.20333,{"date":378,"score":192,"percentile":379},"2026-01-06",0.20347,{"date":381,"score":192,"percentile":382},"2026-01-07",0.2038,{"date":384,"score":192,"percentile":385},"2026-01-08",0.20422,{"date":387,"score":192,"percentile":388},"2026-01-09",0.20424,{"date":390,"score":192,"percentile":391},"2026-01-10",0.20416,{"date":393,"score":192,"percentile":394},"2026-01-11",0.20386,{"date":396,"score":192,"percentile":397},"2026-01-12",0.20349,{"date":399,"score":192,"percentile":400},"2026-01-13",0.20328,{"date":402,"score":192,"percentile":394},"2026-01-14",{"date":404,"score":192,"percentile":405},"2026-01-15",0.20389,{"date":407,"score":192,"percentile":408},"2026-01-16",0.2042,{"date":410,"score":192,"percentile":411},"2026-01-17",0.20428,{"date":413,"score":192,"percentile":414},"2026-01-18",0.20377,{"date":416,"score":192,"percentile":417},"2026-01-19",0.20336,{"date":419,"score":192,"percentile":420},"2026-01-20",0.20316,{"date":422,"score":192,"percentile":423},"2026-01-21",0.20276,{"date":425,"score":192,"percentile":426},"2026-01-22",0.20253,{"date":428,"score":192,"percentile":379},"2026-01-23",{"date":430,"score":192,"percentile":328},"2026-01-24",{"date":432,"score":192,"percentile":433},"2026-01-25",0.20296,{"date":435,"score":192,"percentile":436},"2026-01-26",0.20192,{"date":438,"score":192,"percentile":439},"2026-01-27",0.20183,{"date":441,"score":192,"percentile":442},"2026-01-28",0.20184,{"date":444,"score":192,"percentile":445},"2026-01-29",0.20145,{"date":447,"score":192,"percentile":448},"2026-01-30",0.20147,{"date":450,"score":192,"percentile":451},"2026-01-31",0.20153,{"date":453,"score":192,"percentile":454},"2026-02-01",0.20181,[456,461],{"source":156,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":457,"cvss_v4_0":9},{"baseScore":154,"baseSeverity":458,"vectorString":157,"impactScore":459,"exploitabilityScore":460},"HIGH",9.8,4.6,{"source":162,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":462,"cvss_v4_0":9},{"baseScore":154,"baseSeverity":458,"vectorString":157,"impactScore":459,"exploitabilityScore":460},[464,490],{"ecosystem":9,"name":465,"vendor":466,"product":466,"cpe_part":467,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":468},"Linux","linux","a",[469,476,479,482,485,488],{"version":470,"is_range":471,"range_type":156,"version_start":472,"version_start_type":473,"version_end":474,"version_end_type":475,"fixed_in":9},">= fbfc504a24f53f7ebe128ab55cb5dba634f4ece8, \u003C 4d03f705e9d7aabebc6bfa5810f8aab6d176cbb7",true,"fbfc504a24f53f7ebe128ab55cb5dba634f4ece8","including","4d03f705e9d7aabebc6bfa5810f8aab6d176cbb7","excluding",{"version":477,"is_range":471,"range_type":156,"version_start":472,"version_start_type":473,"version_end":478,"version_end_type":475,"fixed_in":9},">= fbfc504a24f53f7ebe128ab55cb5dba634f4ece8, \u003C ed08c93d5a9801cc8f224a046411fd603c538d07","ed08c93d5a9801cc8f224a046411fd603c538d07",{"version":480,"is_range":471,"range_type":156,"version_start":472,"version_start_type":473,"version_end":481,"version_end_type":475,"fixed_in":9},">= fbfc504a24f53f7ebe128ab55cb5dba634f4ece8, \u003C f8abd03f83d5fe81e76eb93e2c4373eb9f75fd8a","f8abd03f83d5fe81e76eb93e2c4373eb9f75fd8a",{"version":483,"is_range":471,"range_type":156,"version_start":472,"version_start_type":473,"version_end":484,"version_end_type":475,"fixed_in":9},">= fbfc504a24f53f7ebe128ab55cb5dba634f4ece8, \u003C d486b5741d987d3e0e6be4ac22cafdf94e6d1a47","d486b5741d987d3e0e6be4ac22cafdf94e6d1a47",{"version":486,"is_range":471,"range_type":156,"version_start":472,"version_start_type":473,"version_end":487,"version_end_type":475,"fixed_in":9},">= fbfc504a24f53f7ebe128ab55cb5dba634f4ece8, \u003C 32cd3db7de97c0c7a018756ce66244342fd583f0","32cd3db7de97c0c7a018756ce66244342fd583f0",{"version":489,"is_range":150,"range_type":156,"version_start":489,"version_start_type":473,"version_end":489,"version_end_type":473,"fixed_in":9},"4.18",{"ecosystem":9,"name":491,"vendor":466,"product":492,"cpe_part":493,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":494},"linux kernel","linux_kernel","o",[495,499,503,507,511],{"version":496,"is_range":471,"range_type":497,"version_start":489,"version_start_type":473,"version_end":498,"version_end_type":475,"fixed_in":9},"gte4.18_lt5.15.174","cpe","5.15.174",{"version":500,"is_range":471,"range_type":497,"version_start":501,"version_start_type":473,"version_end":502,"version_end_type":475,"fixed_in":9},"gte5.16_lt6.1.120","5.16","6.1.120",{"version":504,"is_range":471,"range_type":497,"version_start":505,"version_start_type":473,"version_end":506,"version_end_type":475,"fixed_in":9},"gte6.2_lt6.6.66","6.2","6.6.66",{"version":508,"is_range":471,"range_type":497,"version_start":509,"version_start_type":473,"version_end":510,"version_end_type":475,"fixed_in":9},"gte6.7_lt6.12.5","6.7","6.12.5",{"version":512,"is_range":150,"range_type":497,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.13:rc1"]