cbcvebase.
CVE-2024-41005
published 2024-07-12

CVE-2024-41005: In the Linux kernel, the following vulnerability has been resolved: netpoll: Fix race condition in netpoll_owner_active KCSAN detected a race condition in…

PriorityP417medium4.7CVSS 3.1
AVLACHPRLUINSUCNINAH
EPSS
0.19%
9.1th percentile
In the Linux kernel, the following vulnerability has been resolved: netpoll: Fix race condition in netpoll_owner_active KCSAN detected a race condition in netpoll: BUG: KCSAN: data-race in net_rx_action / netpoll_send_skb write (marked) to 0xffff8881164168b0 of 4 bytes by interrupt on cpu 10: net_rx_action (./include/linux/netpoll.h:90 net/core/dev.c:6712 net/core/dev.c:6822) read to 0xffff8881164168b0 of 4 bytes by task 1 on cpu 2: netpoll_send_skb (net/core/netpoll.c:319 net/core/netpoll.c:345 net/core/netpoll.c:393) netpoll_send_udp (net/core/netpoll.c:?) value changed: 0x0000000a -> 0xffffffff This happens because netpoll_owner_active() needs to check if the current CPU is the owner of the lock, touching napi->poll_owner non atomically. The ->poll_owner field contains the current CPU holding the lock. Use an atomic read to check if the poll owner is the current CPU.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.99-1 (bookworm)linux 6.1.99-1 (bookworm)
debianlinux-6.1< linux 6.1.99-1 (bookworm)linux 6.1.99-1 (bookworm)
linuxlinux
linuxlinux>= 89c4b442b78bdba388337cc746fe63caba85f46c < 43c0ca793a18578a0f5b305dd77fcf7ed99f126543c0ca793a18578a0f5b305dd77fcf7ed99f1265
linuxlinux>= 89c4b442b78bdba388337cc746fe63caba85f46c < efd29cd9c7b8369dfc7bcb34637e6bf1a188aa8eefd29cd9c7b8369dfc7bcb34637e6bf1a188aa8e
linuxlinux>= 89c4b442b78bdba388337cc746fe63caba85f46c < 96826b16ef9c6568d31a1f6ceaa266411a46e46c96826b16ef9c6568d31a1f6ceaa266411a46e46c
linuxlinux>= 89c4b442b78bdba388337cc746fe63caba85f46c < 3f1a155950a1685ffd0fd7175b3f671da8771f3d3f1a155950a1685ffd0fd7175b3f671da8771f3d
linuxlinux>= 89c4b442b78bdba388337cc746fe63caba85f46c < a130e7da73ae93afdb4659842267eec734ffbd57a130e7da73ae93afdb4659842267eec734ffbd57
linuxlinux>= 89c4b442b78bdba388337cc746fe63caba85f46c < c2e6a872bde9912f1a7579639c5ca3adf1003916c2e6a872bde9912f1a7579639c5ca3adf1003916
linuxlinux_kernel< 5.10.2215.10.221
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.99-16.1.99-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.11 < 5.15.1625.15.162
linuxlinux_kernel>= 5.16 < 6.1.966.1.96
linuxlinux_kernel>= 6.2 < 6.6.366.6.36
linuxlinux_kernel>= 6.7 < 6.9.76.9.7

CVSS provenance

nvdv3.14.7MEDIUMCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu6.3MEDIUM
vendor_debian4.7MEDIUM
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.