CVE-2024-43835 is a Linux kernel vulnerability affecting the virtio_net driver, specifically related to incorrect NAPI context assumptions. This medium-severity flaw (CVSS 5.5) could lead to a denial of service (system crash) due to a warning in the napi_skb_cache_put function, triggered by a local attacker with low privileges. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 5.0, < 6.10.3CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025HP ThinPro 8.1 SP7 Security Updates
Jun 3, 2025kernel: virtio_net: Fix napi_skb_cache_put warning
Aug 17, 2024virtio_net: Fix napi_skb_cache_put warning
Aug 13, 2024