Security Advisory

CVE-2024-0639

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-01-17 15:14:47
Last updated 2025-11-20 18:09:35
Assigner redhat
State PUBLISHED

Description

A denial of service vulnerability due to a deadlock was found in sctp_auto_asconf_init in net/sctp/socket.c in the Linux kernel’s SCTP subsystem. This flaw allows guests with local user privileges to trigger a deadlock and potentially crash the system.