cbcvebase.
CVE-2024-40956
published 2024-07-12

CVE-2024-40956: In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list Use…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.27%
18.8th percentile
In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list Use list_for_each_entry_safe() to allow iterating through the list and deleting the entry in the iteration process. The descriptor is freed via idxd_desc_complete() and there's a slight chance may cause issue for the list iterator when the descriptor is reused by another thread without it being deleted from the list.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.99-1 (bookworm)linux 6.1.99-1 (bookworm)
debianlinux-6.1< linux 6.1.99-1 (bookworm)linux 6.1.99-1 (bookworm)
linuxlinux
linuxlinux>= 16e19e11228ba660d9e322035635e7dcf160d5c2 < 1b08bf5a17c66ab7dbb628df5344da53c8e7ab331b08bf5a17c66ab7dbb628df5344da53c8e7ab33
linuxlinux>= 16e19e11228ba660d9e322035635e7dcf160d5c2 < 83163667d881100a485b6c2daa30301b7f68d9b583163667d881100a485b6c2daa30301b7f68d9b5
linuxlinux>= 16e19e11228ba660d9e322035635e7dcf160d5c2 < faa35db78b058a2ab6e074ee283f69fa398c36a8faa35db78b058a2ab6e074ee283f69fa398c36a8
linuxlinux>= 16e19e11228ba660d9e322035635e7dcf160d5c2 < a14968921486793f2a956086895c3793761309dda14968921486793f2a956086895c3793761309dd
linuxlinux>= 16e19e11228ba660d9e322035635e7dcf160d5c2 < e3215deca4520773cd2b155bed164c12365149a7e3215deca4520773cd2b155bed164c12365149a7
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.99-16.1.99-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.11 < 5.15.1625.15.162
linuxlinux_kernel>= 5.16 < 6.1.966.1.96
linuxlinux_kernel>= 6.2 < 6.6.366.6.36
linuxlinux_kernel>= 6.7 < 6.9.76.9.7

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu6.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.