CVE-2024-44995

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/09/2024
Last modified:
03/11/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> net: hns3: fix a deadlock problem when config TC during resetting<br /> <br /> When config TC during the reset process, may cause a deadlock, the flow is<br /> as below:<br /> pf reset start<br /> │<br /> ▼<br /> ......<br /> setup tc │<br /> │ ▼<br /> ▼ DOWN: napi_disable()<br /> napi_disable()(skip) │<br /> │ │<br /> ▼ ▼<br /> ...... ......<br /> │ │<br /> ▼ │<br /> napi_enable() │<br /> ▼<br /> UINIT: netif_napi_del()<br /> │<br /> ▼<br /> ......<br /> │<br /> ▼<br /> INIT: netif_napi_add()<br /> │<br /> ▼<br /> ...... global reset start<br /> │ │<br /> ▼ ▼<br /> UP: napi_enable()(skip) ......<br /> │ │<br /> ▼ ▼<br /> ...... napi_disable()<br /> <br /> In reset process, the driver will DOWN the port and then UINIT, in this<br /> case, the setup tc process will UP the port before UINIT, so cause the<br /> problem. Adds a DOWN process in UINIT to fix it.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 4.15 (including) 5.4.283 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.5 (including) 5.10.225 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.11 (including) 5.15.166 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16 (including) 6.1.107 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.6.48 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7 (including) 6.10.7 (excluding)
cpe:2.3:o:linux:linux_kernel:6.11:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.11:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.11:rc3:*:*:*:*:*:*