cbcvebase.
CVE-2024-39468
published 2024-06-25

CVE-2024-39468: In the Linux kernel, the following vulnerability has been resolved: smb: client: fix deadlock in smb2_find_smb_tcon() Unlock cifs_tcp_ses_lock before calling…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.53%
42.0th percentile
In the Linux kernel, the following vulnerability has been resolved: smb: client: fix deadlock in smb2_find_smb_tcon() Unlock cifs_tcp_ses_lock before calling cifs_put_smb_ses() to avoid such deadlock.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= 78ebec450ef4f0720c592638d92bad679d75d7ce < b055752675cd1d1db4ac9c2750db3dc3e89ea261b055752675cd1d1db4ac9c2750db3dc3e89ea261
linuxlinux>= e695a9ad0305af6e8b0cbc24a54976ac2120cbb3 < 21f5dd36e655d25a7b45b61c1e537198b671f72021f5dd36e655d25a7b45b61c1e537198b671f720
linuxlinux>= e695a9ad0305af6e8b0cbc24a54976ac2120cbb3 < b09b556e48968317887a11243a5331a7bc00ece5b09b556e48968317887a11243a5331a7bc00ece5
linuxlinux>= e695a9ad0305af6e8b0cbc24a54976ac2120cbb3 < 225de871ddf994f69a57f035709cad9c0ab8615a225de871ddf994f69a57f035709cad9c0ab8615a
linuxlinux>= e695a9ad0305af6e8b0cbc24a54976ac2120cbb3 < 8d0f5f1ccf675454a833a573c53830a49b7d1a478d0f5f1ccf675454a833a573c53830a49b7d1a47
linuxlinux>= e695a9ad0305af6e8b0cbc24a54976ac2120cbb3 < 02c418774f76a0a36a6195c9dbf8971eb4130a1502c418774f76a0a36a6195c9dbf8971eb4130a15
linuxlinux_kernel< 5.10.2215.10.221
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.11 < 5.15.1625.15.162
linuxlinux_kernel>= 5.16 < 6.1.946.1.94
linuxlinux_kernel>= 6.2 < 6.6.346.6.34
linuxlinux_kernel>= 6.7 < 6.9.56.9.5

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu6.3MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.