Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2024-27394] Deep Dive into RCU Race Condition: Analysis of TCP-AO UAF (CVE-2024–27394)

Summary

A deep dive into CVE-2024-27394, a TCP-AO use-after-free caused by incorrect RCU API usage in the Linux kernel, covering RCU internals, the patch, and the ExpRace technique for reliable triggering.
Published
Collected

original ↗

Related coverage

back