CVE-2024-35808
Published: May 17, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: md/dm-raid: don't call md_reap_sync_thread() directly Currently md_reap_sync_thread() is called from raid_message() directly without holding 'reconfig_mutex', this is definitely unsafe because md_reap_sync_thread() can change many fields that is protected by 'reconfig_mutex'. However, hold 'reconfig_mutex' here is still problematic because this will cause deadlock, for example, commit 130443d60b1b ("md: refactor idle/frozen_sync_thread() to fix deadlock"). Fix this problem by using stop_sync_thread() to unregister sync_thread, like md/raid did.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected be83651f0050ca8621d58d35dad558e9c45cb18f - < 347dcdc15a1706f61aa545ae498ededdf31aeebcaffected be83651f0050ca8621d58d35dad558e9c45cb18f - < 9e59b8d76ff511505eb0dd1478329f09e0f04669affected be83651f0050ca8621d58d35dad558e9c45cb18f - < cd32b27a66db8776d8b8e82ec7d7dde97a8693b0 |
Linux | Linux | affected 3.10unaffected 0 - < 3.10unaffected 6.7.12 - <= 6.7.*unaffected 6.8.3 - <= 6.8.*unaffected 6.9 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now