CVE-2024-56783: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level cgroup maximum depth is INT_MAX by default, there is a cgroup toggle to restrict this maximum depth to a more reasonable value not to harm performance. Remove unnecessary WARN_ON_ONCE which is reachable from userspace.

Affected products

  • Linux Linux Kernel: from 6.1.112, before 6.1.120 (fixed in 6.1.120); from 6.6.53, before 6.6.66 (fixed in 6.6.66); from 6.10.12, before 6.12.5 (fixed in 6.12.5); version 6.13 only

Published 2025-01-08. Last modified 2026-06-17.