cbcvebase.
CVE-2024-44958
published 2024-09-04

CVE-2024-44958: In the Linux kernel, the following vulnerability has been resolved: sched/smt: Fix unbalance sched_smt_present dec/inc I got the following warn report while…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.7th percentile
In the Linux kernel, the following vulnerability has been resolved: sched/smt: Fix unbalance sched_smt_present dec/inc I got the following warn report while doing stress test: jump label: negative count! WARNING: CPU: 3 PID: 38 at kernel/jump_label.c:263 static_key_slow_try_dec+0x9d/0xb0 Call Trace: __static_key_slow_dec_cpuslocked+0x16/0x70 sched_cpu_deactivate+0x26e/0x2a0 cpuhp_invoke_callback+0x3ad/0x10d0 cpuhp_thread_fun+0x3f5/0x680 smpboot_thread_fn+0x56d/0x8d0 kthread+0x309/0x400 ret_from_fork+0x41/0x70 ret_from_fork_asm+0x1b/0x30 Because when cpuset_cpu_inactive() fails in sched_cpu_deactivate(), the cpu offline failed, but sched_smt_present is decremented before calling sched_cpu_deactivate(), it leads to unbalanced dec/inc, so fix it by incrementing sched_smt_present in the error path.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 4.14.86 < 4.154.15
linuxlinux>= 4.19.7 < 4.204.20
linuxlinux>= c5511d03ec090980732e929c318a7a6374b5550e < 2a3548c7ef2e135aee40e7e5e44e7d11b893e7c42a3548c7ef2e135aee40e7e5e44e7d11b893e7c4
linuxlinux>= c5511d03ec090980732e929c318a7a6374b5550e < 2cf7665efe451e48d27953e6b5bc627d518c902b2cf7665efe451e48d27953e6b5bc627d518c902b
linuxlinux>= c5511d03ec090980732e929c318a7a6374b5550e < 65727331b60197b742089855ac09464c22b96f6665727331b60197b742089855ac09464c22b96f66
linuxlinux>= c5511d03ec090980732e929c318a7a6374b5550e < d0c87a3c6be10a57aa3463c32c3fc6b2a47c3dabd0c87a3c6be10a57aa3463c32c3fc6b2a47c3dab
linuxlinux>= c5511d03ec090980732e929c318a7a6374b5550e < e22f910a26cc2a3ac9c66b8e935ef2a7dd881117e22f910a26cc2a3ac9c66b8e935ef2a7dd881117
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.10.6-16.10.6-1
linuxlinux_kernel>= 0 < 6.10.6-16.10.6-1
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 4.14.86 < 4.154.15
linuxlinux_kernel>= 4.19.7 < 4.204.20
linuxlinux_kernel>= 4.20 < 5.15.1655.15.165
linuxlinux_kernel>= 5.16 < 6.1.1056.1.105
linuxlinux_kernel>= 6.2 < 6.6.466.6.46
linuxlinux_kernel>= 6.7 < 6.10.56.10.5
msrccbl2_kernel_5.15.164.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.