cbcvebase.
CVE-2024-41068
published 2024-07-29

CVE-2024-41068: In the Linux kernel, the following vulnerability has been resolved: s390/sclp: Fix sclp_init() cleanup on failure If sclp_init() fails it only partially cleans…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.5th percentile
In the Linux kernel, the following vulnerability has been resolved: s390/sclp: Fix sclp_init() cleanup on failure If sclp_init() fails it only partially cleans up: if there are multiple failing calls to sclp_init() sclp_state_change_event will be added several times to sclp_reg_list, which results in the following warning: ------------[ cut here ]------------ list_add double add: new=000003ffe1598c10, prev=000003ffe1598bf0, next=000003ffe1598c10. WARNING: CPU: 0 PID: 1 at lib/list_debug.c:35 __list_add_valid_or_report+0xde/0xf8 CPU: 0 PID: 1 Comm: swapper/0 Not tainted 6.10.0-rc3 Krnl PSW : 0404c00180000000 000003ffe0d6076a (__list_add_valid_or_report+0xe2/0xf8) R:0 T:1 IO:0 EX:0 Key:0 M:1 W:0 P:0 AS:3 CC:0 PM:0 RI:0 EA:3 ... Call Trace: [] __list_add_valid_or_report+0xe2/0xf8 ([] __list_add_valid_or_report+0xde/0xf8) [] sclp_init+0x40e/0x450 [] do_one_initcall+0x42/0x1e0 [] do_initcalls+0x126/0x150 [] kernel_init_freeable+0x1ba/0x1f8 [] kernel_init+0x2e/0x180 [] __ret_from_fork+0x3c/0x60 [] ret_from_fork+0xa/0x30 Fix this by removing sclp_state_change_event from sclp_reg_list when sclp_init() fails.

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 8bc00c04d87ee151fb8fe18ed7e7af8c785843f2 < cf521049fcd07071ed42dc9758fce7d5ee120ec6cf521049fcd07071ed42dc9758fce7d5ee120ec6
linuxlinux>= 8bc00c04d87ee151fb8fe18ed7e7af8c785843f2 < 79b4be70d5a160969b805f638ac5b4efd0aac7a379b4be70d5a160969b805f638ac5b4efd0aac7a3
linuxlinux>= 8bc00c04d87ee151fb8fe18ed7e7af8c785843f2 < 0a31b3fdc7e735c4f8c65fe4339945c717ed68080a31b3fdc7e735c4f8c65fe4339945c717ed6808
linuxlinux>= 8bc00c04d87ee151fb8fe18ed7e7af8c785843f2 < be0259796d0b76bbc7461e12c186814a9e58244cbe0259796d0b76bbc7461e12c186814a9e58244c
linuxlinux>= 8bc00c04d87ee151fb8fe18ed7e7af8c785843f2 < 6434b33faaa063df500af355ee6c3942e0f8d9826434b33faaa063df500af355ee6c3942e0f8d982
linuxlinux_kernel< 4.19.3194.19.319
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.223-15.10.223-1
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.9.11-16.9.11-1
linuxlinux_kernel>= 0 < 6.9.11-16.9.11-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 4.20 < 5.4.2815.4.281
linuxlinux_kernel>= 5.11 < 5.15.1645.15.164
linuxlinux_kernel>= 5.16 < 6.1.1016.1.101
linuxlinux_kernel>= 5.5 < 5.10.2235.10.223
linuxlinux_kernel>= 6.2 < 6.6.426.6.42
linuxlinux_kernel>= 6.7 < 6.9.116.9.11

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.