CVE-2024-56645

Advisory lineage Upstream: 0 Downstream: 56
Modified
Published: 27 Dec 2024, 15:02
Last modified:11 May 2026, 20:56

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (nvd)
EPSS Score
<0.01% LOW
0% probability -0.03%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 Dec 2024, 15:02
Published
Vulnerability first disclosed
11 May 2026, 20:56
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: can: j1939: j1939_session_new(): fix skb reference counting Since j1939_session_skb_queue() does an extra skb_get() for each new skb, do the same for the initial one in j1939_session_new() to avoid refcount underflow. [mkl: clean up commit message]

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.01% Percentile: 1%

Affected Systems

  • linuxlinux

    ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < 224e606a8d8e8c7db94036272c47a37455667313 | ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < b3282c2bebeeb82ceec492ee4972f51ee7a4a132 | ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < 4199dd78a59896e091d3a7a05a77451aa7fd724d | ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < f117cba69cbbd496babb3defcdf440df4fd6fe14 | ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < 426d94815e12b6bdb9a75af294fbbafb9301601d | ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < 68fceb143b635cdc59fed3896d5910aff38f345e | ≥ 9d71dd0c70099914fcd063135da3c580865e924c, < a8c695005bfe6569acd73d777ca298ddddd66105 | 5.4

  • linuxlinux_kernel

    ≥ 5.4, < 5.4.287 | ≥ 5.5, < 5.10.231 | ≥ 5.11, < 5.15.174 | ≥ 5.16, < 6.1.120 | ≥ 6.2, < 6.6.66 | ≥ 6.7, < 6.12.5 | 6.13:rc1

References (9)