kernel CVE-2024-23849
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.19.3
Patched versions
1.19.3
kernel-5.15
(bottlerocket)
< 1.19.3
1.19.3
kernel-6.1
(bottlerocket)
< 1.19.3
1.19.3
A flaw was found in rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel. An off-by-one error exists for an RDS_MSG_RX_DGRAM_TRACE_MAX comparison, resulting in out-of-bounds access.