Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-434x-x6q8-frpr

Опубликовано: 17 мая 2024
Источник: github
Github: Не прошло ревью

Описание

In the Linux kernel, the following vulnerability has been resolved:

usb: cdc-wdm: close race between read and workqueue

wdm_read() cannot race with itself. However, in service_outstanding_interrupt() it can race with the workqueue, which can be triggered by error handling.

Hence we need to make sure that the WDM_RESPONDING flag is not just only set but tested.

In the Linux kernel, the following vulnerability has been resolved:

usb: cdc-wdm: close race between read and workqueue

wdm_read() cannot race with itself. However, in service_outstanding_interrupt() it can race with the workqueue, which can be triggered by error handling.

Hence we need to make sure that the WDM_RESPONDING flag is not just only set but tested.

Связанные уязвимости

CVSS3: 5.5
redhat
около 1 года назад

A vulnerability was found in the USB Communication Device Class - Wireless Data Modem (CDC-WDM) driver in the Linux Kernel, leading to a race condition between read operations and workqueue processing. This issue could potentially result in unpredictable behavior or crashes.

nvd
около 1 года назад

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

suse-cvrf
12 месяцев назад

Security update for the Linux Kernel

suse-cvrf
12 месяцев назад

Security update for the Linux Kernel

oracle-oval
7 месяцев назад

ELSA-2024-9315: kernel security update (MODERATE)