Cyber Resilience

CVE-2024-36958

Linux Kernel 6.7 – 6.8.10

Published
30 May 2024
Modified
01 October 2025
Patch / advisory
CVSS Score v3.1 5.5
Click a component to see what it means
Raw vectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score 0.0024 15th percentile
Risk Priority 35 floored blend · peak EPSS

Summary

CVE-2024-36958 is a medium-severity an unspecified weakness vulnerability in Linux Linux Kernel. Its CVSS base score is 5.5 (Medium).

Operationally, ranked at the 15th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

EU & UK References

Vulnerability Data

In the Linux kernel, the following vulnerability has been resolved: NFSD: Fix nfsd4_encode_fattr4() crasher Ensure that args.acl is initialized early. It is used in an unconditional call to kfree() on the way out of nfsd4_encode_fattr4().

CWE(s)

Related Threats

CVEs Like This One

CVE-2023-32252Same product: Linux Linux Kernel
CVE-2023-33250Same product: Linux Linux Kernel
CVE-2023-40791Same product: Linux Linux Kernel
CVE-2022-0185Same product: Linux Linux Kernel
CVE-2023-2007Same product: Linux Linux Kernel
CVE-2023-38428Same product: Linux Linux Kernel
CVE-2023-38426Same product: Linux Linux Kernel
CVE-2023-2124Same product: Linux Linux Kernel
CVE-2023-3111Same product: Linux Linux Kernel
CVE-2023-2898Same product: Linux Linux Kernel

Affected Assets

linux
linux kernel
6.9 · 6.7 — 6.8.10
netapp
converged systems advisor agent
all versions
netapp
solidfire \& hci management node
all versions
netapp
solidfire \& hci storage node
all versions
netapp
hci compute node
all versions
netapp
h300s firmware
all versions
netapp
h500s firmware
all versions
netapp
h700s firmware
all versions
netapp
h410s firmware
all versions
netapp
h410c firmware
all versions

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References