AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-40920

HIGH · CVSS 7.8 EPSS 0.29%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-07-12 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Linux.

CVE
CVE-2024-40920
Severity
HIGH
CVSS
7.8
EPSS
0.29%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: net: bridge: mst: fix suspicious rcu usage in br_mst_set_state I converted br_mst_set_state to RCU to avoid a vlan use-after-free but forgot to change the vlan group dereference helper. Switch to vlan group RCU deref helper to fix the suspicious rcu usage warning.

Related CVEs

Other vulnerabilities affecting the same vendor(s)