Rewterz
Rewterz Threat Alert –Amadey Botnet – Active IOCs
January 22, 2024
Rewterz
Rewterz Threat Alert –Remcos RAT – Active IOCs
January 22, 2024

Rewterz Threat Alert – CVE-2024-0639 – Linux Kernel Vulnerability

Severity

Medium

Analysis Summary

CVE-2024-0639

Linux Kernel is vulnerable to a denial of service, caused by a deadlock flaw in the sctp_auto_asconf_init function in net/sctp/socket.c. By sending a specially crafted request, a local authenticated attacker could exploit this vulnerability to cause the system to crash.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2024-0639

Affected Vendors

Linux

Affected Products

  • Linux Kernel 6.4

Remediation

Refer to Linux Kernel GIT Repository for patch, upgrade or suggested workaround information.

Linux Kernel GIT Repository