CVE-2024-46858 | Linux Kernel up to 6.1.110/6.6.51/6.10.10 mptcp sk_stop_timer_sync use after free (Nessus ID 208099 / WID-SEC-2024-3050)
A vulnerability classified as critical has been found in Linux Kernel up to 6.1.110/6.6.51/6.10.10. Impacted is the function sk_stop_timer_sync of the component mptcp. This manipulation causes use after free.
This vulnerability is tracked as CVE-2024-46858. The attack is only possible within the local network. No exploit exists.
It is recommended to upgrade the affected component.