CVE-2024-38663

In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix list corruption from resetting io stat Since commit 3b8cc6298724 ("blk-cgroup: Optimize blkcg_rstat_flush()"), each iostat instance is added to blkcg percpu list, so blkcg_reset_stats() can't reset the stat instance by memset(), otherwise the llist may be corrupted. Fix the issue by only resetting the counter part.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

03 Oct 2025, 15:08

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux linux Kernel
Linux
References () https://git.kernel.org/stable/c/6da6680632792709cecf2b006f2fe3ca7857e791 - () https://git.kernel.org/stable/c/6da6680632792709cecf2b006f2fe3ca7857e791 - Patch
References () https://git.kernel.org/stable/c/89bb36c72e1951843f9e04dc84412e31fcc849a9 - () https://git.kernel.org/stable/c/89bb36c72e1951843f9e04dc84412e31fcc849a9 - Patch
References () https://git.kernel.org/stable/c/d4a60298ac34f027a09f8f893fdbd9e06279bb24 - () https://git.kernel.org/stable/c/d4a60298ac34f027a09f8f893fdbd9e06279bb24 - Patch

21 Nov 2024, 09:26

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/6da6680632792709cecf2b006f2fe3ca7857e791 - () https://git.kernel.org/stable/c/6da6680632792709cecf2b006f2fe3ca7857e791 -
References () https://git.kernel.org/stable/c/89bb36c72e1951843f9e04dc84412e31fcc849a9 - () https://git.kernel.org/stable/c/89bb36c72e1951843f9e04dc84412e31fcc849a9 -
References () https://git.kernel.org/stable/c/d4a60298ac34f027a09f8f893fdbd9e06279bb24 - () https://git.kernel.org/stable/c/d4a60298ac34f027a09f8f893fdbd9e06279bb24 -
Summary
  • (es) En el kernel de Linux, se resolvió la siguiente vulnerabilidad: blk-cgroup: corrige la corrupción de la lista al restablecer io stat Desde el commit 3b8cc6298724 ("blk-cgroup: Optimizar blkcg_rstat_flush()"), cada instancia de iostat se agrega a la lista de percpu de blkcg, por lo que blkcg_reset_stats() no puede restablecer la instancia de estadísticas mediante memset(); de lo contrario, la lista puede estar dañada. Solucione el problema reiniciando solo la contraparte.

24 Jun 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-24 14:15

Updated : 2025-10-03 15:08


NVD link : CVE-2024-38663

Mitre link : CVE-2024-38663

CVE.ORG link : CVE-2024-38663


JSON object : View

Products Affected

linux

  • linux_kernel