CVE-2024-53138

Description

A flaw was found in the Linux kernel's Mellanox mlx5 network driver. During kernel Transport Layer Security (kTLS) data transmission, an inconsistency in how memory page reference counters are tracked causes large memory structures to be dereferenced excessively when released. A local user could trigger this flaw to cause memory corruption, leading to a system crash and a Denial of Service (DoS).

Mitigation

Disable TLS hardware transmit offload on affected Mellanox network interfaces, or prevent the mlx5_core kernel module from loading if Mellanox hardware is not needed.

1. To disable TLS hardware transmit offload on an active network interface:

# ethtool -K <interface_name> tls-hw-tx-offload off
Caveat: Disabling hardware TLS offload shifts TLS encryption and framing processing to the CPU in software, which may increase CPU utilization.

2. Alternatively, if Mellanox ConnectX adapters are not required on the system, prevent the driver module from autoloading by configuring modprobe:

# echo "install mlx5_core /bin/true" > /etc/modprobe.d/disable-mlx5_core.conf
Warning: A system reboot or manual unloading of the module is required for module blacklisting to take effect. Blacklisting mlx5_core will disable all Mellanox network interfaces managed by this driver.

Common Vulnerability Scoring System (CVSS) Score Details

Info alert:Important note

CVSS scores for open source components depend on vendor-specific factors (e.g. version or build chain). Therefore, Red Hat's score and impact rating can be different from NVD and other vendors. Red Hat remains the authoritative CVE Naming Authority (CNA) source for its products and services (see Red Hat classifications).

The following CVSS metrics and score provided are preliminary and subject to review.

CVSS v3 Score Breakdown

Red HatNVDcve.org
Base Score4.45.59.8
Attack VectorLocalLocalNetwork
Attack ComplexityLowLowLow
Privileges RequiredHighLowNone
User InteractionNoneNoneNone
ScopeUnchangedUnchangedUnchanged
ConfidentialityNoneNoneHigh
Integrity ImpactNoneNoneHigh
Availability ImpactHighHighHigh

Vector

Red Hat: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

NVD: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

cve.org: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Understanding the Weakness (CWE)

Confidentiality,Integrity

Technical Impact: Read Application Data; Modify Application Data; Read Files or Directories; Modify Files or Directories

An attacker could gain access to or modify sensitive data or system resources. This could allow access to protected files or directories including configuration files and files containing sensitive information.

Frequently Asked Questions

Want to get errata notifications? Sign up here.