CVE-2024-46861: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: usbnet: ipheth: do not stop RX on failing RX callback RX callbacks can fail for multiple reasons: * Payload too short * Payload formatted incorrecly (e.g. bad NCM framing) * Lack of memory None of these should cause the driver to seize up. Make such failures non-critical and continue processing further incoming URBs.

Affected products

  • Linux Linux Kernel: before 6.6.52 (fixed in 6.6.52); from 6.7, before 6.10.11 (fixed in 6.10.11); version 6.11 only

Published 2024-09-27. Last modified 2026-06-17.