cbcvebase.
CVE-2024-38618
published 2024-06-19

CVE-2024-38618: In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Set lower bound of start tick time Currently ALSA timer doesn't have the lower…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.65%
47.5th percentile
In the Linux kernel, the following vulnerability has been resolved: ALSA: timer: Set lower bound of start tick time Currently ALSA timer doesn't have the lower limit of the start tick time, and it allows a very small size, e.g. 1 tick with 1ns resolution for hrtimer. Such a situation may lead to an unexpected RCU stall, where the callback repeatedly queuing the expire update, as reported by fuzzer. This patch introduces a sanity check of the timer start tick time, so that the system returns an error when a too small start size is set. As of this patch, the lower limit is hard-coded to 100us, which is small enough but can still work somehow.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < 68396c825c43664b20a3a1ba546844deb2b4e48f68396c825c43664b20a3a1ba546844deb2b4e48f
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < 74bfb8d90f2601718ae203faf45a196844c01fa174bfb8d90f2601718ae203faf45a196844c01fa1
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < bdd0aa055b8ec7e24bbc19513f3231958741d0abbdd0aa055b8ec7e24bbc19513f3231958741d0ab
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < 83f0ba8592b9e258fd80ac6486510ab1dcd7ad6e83f0ba8592b9e258fd80ac6486510ab1dcd7ad6e
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < ceab795a67dd28dd942d0d8bba648c6c0f7a044bceab795a67dd28dd942d0d8bba648c6c0f7a044b
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < 2c95241ac5fc90c929d6c0c023e84bf0d30e84c32c95241ac5fc90c929d6c0c023e84bf0d30e84c3
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < abb1ad69d98cf1ff25bb14fff0e7c3f66239e1cdabb1ad69d98cf1ff25bb14fff0e7c3f66239e1cd
linuxlinux>= bbaf5e97337287479eb78dbc3822d9560bbfd2e2 < 4a63bd179fa8d3fcc44a0d9d71d941ddd62f0c4e4a63bd179fa8d3fcc44a0d9d71d941ddd62f0c4e
linuxlinux_kernel< 4.19.3164.19.316
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.4.0-192.2125.4.0-192.212
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 0 < 4.4.0-273.3074.4.0-273.307
linuxlinux_kernel>= 0 < 4.15.0-242.2544.15.0-242.254
linuxlinux_kernel>= 4.20 < 5.4.2785.4.278
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 5.5 < 5.10.2195.10.219
linuxlinux_kernel>= 6.2 < 6.6.336.6.33

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.