CVE-2024-50210
Published: Nov 8, 2024
Modified: May 12, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: posix-clock: posix-clock: Fix unbalanced locking in pc_clock_settime() If get_clock_desc() succeeds, it calls fget() for the clockid's fd, and get the clk->rwsem read lock, so the error path should release the lock to make the lock balance and fput the clockid's fd to make the refcount balance and release the fd related resource. However the below commit left the error path locked behind resulting in unbalanced locking. Check timespec64_valid_strict() before get_clock_desc() to fix it, because the "ts" is not changed after that. [[email protected]: fixed commit message typo]
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 29f085345cde24566efb751f39e5d367c381c584 - < d005400262ddaf1ca1666bbcd1acf42fe81d57ceaffected e0c966bd3e31911b57ef76cec4c5796ebd88e512 - < a8219446b95a859488feaade674d13f9efacfa32affected 673a1c5a2998acbd429d6286e6cad10f17f4f073 - < c7fcfdba35abc9f39b83080c2bce398dad13a943affected c8789fbe2bbf75845e45302cba6ffa44e1884d01 - < e56e0ec1b79f5a6272c6e78b36e9d593aa0449afaffected 27abbde44b6e71ee3891de13e1a228aa7ce95bfe - < 5f063bbf1ee6b01611c016b54e050a41506eb794+3 more versions |
Linux | Linux | affected 5.10.228 - < 5.10.229affected 5.15.169 - < 5.15.170affected 6.1.114 - < 6.1.115affected 6.6.58 - < 6.6.59affected 6.11.5 - < 6.11.6 |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now