CVE Database
/

CVE-2024-42250

Back to search

CVE-2024-42250

Published: Aug 7, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: cachefiles: add missing lock protection when polling Add missing lock protection in poll routine when iterating xarray, otherwise: Even with RCU read lock held, only the slot of the radix tree is ensured to be pinned there, while the data structure (e.g. struct cachefiles_req) stored in the slot has no such guarantee. The poll routine will iterate the radix tree and dereference cachefiles_req accordingly. Thus RCU read lock is not adequate in this case and spinlock is needed here.

VendorProductVersions

Linux

Linux

affected
0e19a18f998dcabe8be590e0b39660a1f230209b - < 97cfd5e20ddc2e33e16ce369626ce76c9a475fd7
affected
18943864342705fa18dd4e6b8d608491fec81f6e - < 6bb6bd3dd6f382dfd36220d4b210a0c77c066651
affected
b817e22b2e91257ace32a6768c3c003faeaa1c5c - < 8eadcab7f3dd809edbe5ae20533ff843dfea3a07
affected
b817e22b2e91257ace32a6768c3c003faeaa1c5c - < cf5bb09e742a9cf6349127e868329a8f69b7a014

Linux

Linux

affected
6.8
unaffected
0 - < 6.8
unaffected
6.9.10 - <= 6.9.*
unaffected
6.10 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now