CVE-2024-40944
Published: Jul 12, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: x86/kexec: Fix bug with call depth tracking The call to cc_platform_has() triggers a fault and system crash if call depth tracking is active because the GS segment has been reset by load_segments() and GS_BASE is now 0 but call depth tracking uses per-CPU variables to operate. Call cc_platform_has() earlier in the function when GS is still valid. [ bp: Massage. ]
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 5d8213864ade86b48fc492584ea86d65a62f892e - < d91ddd05082691e69b30744825d18ae799293258affected 5d8213864ade86b48fc492584ea86d65a62f892e - < 2cfb464669b645a9b98478b74f2bcea9860dcff1affected 5d8213864ade86b48fc492584ea86d65a62f892e - < 93c1800b3799f17375989b0daf76497dd3e80922 |
Linux | Linux | affected 6.2unaffected 0 - < 6.2unaffected 6.6.35 - <= 6.6.*unaffected 6.9.6 - <= 6.9.*unaffected 6.10 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now