CVE Database
/

CVE-2024-35808

Back to search

CVE-2024-35808

Published: May 17, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: md/dm-raid: don't call md_reap_sync_thread() directly Currently md_reap_sync_thread() is called from raid_message() directly without holding 'reconfig_mutex', this is definitely unsafe because md_reap_sync_thread() can change many fields that is protected by 'reconfig_mutex'. However, hold 'reconfig_mutex' here is still problematic because this will cause deadlock, for example, commit 130443d60b1b ("md: refactor idle/frozen_sync_thread() to fix deadlock"). Fix this problem by using stop_sync_thread() to unregister sync_thread, like md/raid did.

VendorProductVersions

Linux

Linux

affected
be83651f0050ca8621d58d35dad558e9c45cb18f - < 347dcdc15a1706f61aa545ae498ededdf31aeebc
affected
be83651f0050ca8621d58d35dad558e9c45cb18f - < 9e59b8d76ff511505eb0dd1478329f09e0f04669
affected
be83651f0050ca8621d58d35dad558e9c45cb18f - < cd32b27a66db8776d8b8e82ec7d7dde97a8693b0

Linux

Linux

affected
3.10
unaffected
0 - < 3.10
unaffected
6.7.12 - <= 6.7.*
unaffected
6.8.3 - <= 6.8.*
unaffected
6.9 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now