CVE-2024-50304 | Linux Kernel up to 6.11.6 net/ipv4/ip_tunnel.c ip_tunnel_find stack-based overflow (f20fe2cfe06c/90e0569dd3d3 / Nessus ID 215144)
A vulnerability was found in Linux Kernel up to 6.11.6 and classified as critical. Affected by this issue is the function ip_tunnel_find of the file net/ipv4/ip_tunnel.c. The manipulation leads to stack-based buffer overflow.
This vulnerability is handled as CVE-2024-50304. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.