CVE-2024-42232

Description

In the Linux kernel, the following vulnerability has been resolved:libceph: fix race between delayed_work() and ceph_monc_stop()The way the delayed work is handled in ceph_monc_stop() is prone toraces with mon_fault() and possibly also finish_hunting(). Both ofthese can requeue the delayed work which wouldnt be canceled by any ofthe following code in case that happens after cancel_delayed_work_sync()runs -- __close_session() doesnt mess with the delayed work in orderto avoid interfering with the hunting interval logic. This part wasmissed in commit b5d91704f53e (libceph: behave in mon_fault() ifcur_mon < 0) and use-after-free can still ensue on monc and objectsthat hang off of it, with monc->auth and monc->monmap beingparticularly susceptible to quickly being reused.To fix this:- clear monc->cur_mon and monc->hunting as part of closing the session in ceph_monc_stop()- bail from delayed_work() if monc->cur_mon is cleared, similar to how its done in mon_fault() and finish_hunting() (based on monc->hunting)- call cancel_delayed_work_sync() after the session is closed

Risk Information

Base Score
5.5
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.016

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in IBM Security Guardium 12.0Windows
Multiple Vulnerabilities are affected in IBM Security Guardium 12.1Windows
Kernel-uek update (ELSA-2024-12610) kernel-uek-5.4.17-2136.335.4.el8uek.x86_64.rpmLinux
Kernel-uek update (ELSA-2024-12610) kernel-uek-5.4.17-2136.335.4.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2024-12610) kernel-uek-debug-5.4.17-2136.335.4.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2024-12610) kernel-uek-debug-devel-5.4.17-2136.335.4.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2024-12610) kernel-uek-debug-devel-5.4.17-2136.335.4.el8uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2024-12610) kernel-uek-devel-5.4.17-2136.335.4.el7uek.x86_64.rpmLinux
Kernel-uek-devel update (ELSA-2024-12610) kernel-uek-devel-5.4.17-2136.335.4.el8uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2024-12610) kernel-uek-doc-5.4.17-2136.335.4.el7uek.noarch.rpmLinux
Kernel-uek-doc update (ELSA-2024-12610) kernel-uek-doc-5.4.17-2136.335.4.el8uek.noarch.rpmLinux
Kernel-uek-tools update (ELSA-2024-12610) kernel-uek-tools-5.4.17-2136.335.4.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2024-12610) kernel-uek-debug-5.4.17-2136.335.4.el8uek.x86_64.rpmLinux
Kernel-uek-container update (ELSA-2024-12612) kernel-uek-container-5.4.17-2136.335.4.el8.x86_64.rpmLinux
Kernel-uek-container-debug update (ELSA-2024-12612) kernel-uek-container-debug-5.4.17-2136.335.4.el7.x86_64.rpmLinux
Kernel-uek-container-debug update (ELSA-2024-12612) kernel-uek-container-debug-5.4.17-2136.335.4.el8.x86_64.rpmLinux
Kernel-uek-container update (ELSA-2024-12612) kernel-uek-container-5.4.17-2136.335.4.el7.x86_64.rpmLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1079-ibm_5.4.0-1079.84_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1099-gkeop_5.4.0-1099.103_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1120-kvm_5.4.0-1120.128_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1131-oracle_5.4.0-1131.140_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1132-aws_5.4.0-1132.142_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1136-gcp_5.4.0-1136.145_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-1137-azure_5.4.0-1137.144_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-195-generic_5.4.0-195.215_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-5.4.0-195-lowlatency_5.4.0-195.215_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-aws-lts-20.04_5.4.0.1132.129_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-azure-lts-20.04_5.4.0.1137.131_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-gcp-lts-20.04_5.4.0.1136.138_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-generic_5.4.0.195.193_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-gkeop_5.4.0.1099.97_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-gkeop-5.4_5.4.0.1099.97_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-ibm-lts-20.04_5.4.0.1079.108_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-kvm_5.4.0.1120.116_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-lowlatency_5.4.0.195.193_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-oem_5.4.0.195.193_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-oem-osp1_5.4.0.195.193_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-oracle-lts-20.04_5.4.0.1131.124_amd64.debLinux
Linux kernel (USN-7003-1) linux-image-virtual_5.4.0.195.193_amd64.debLinux
Linux kernel for IoT platforms (USN-7006-1) linux-image-5.4.0-1043-iot_5.4.0-1043.44_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1052-gkeop_5.15.0-1052.59_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1052-gkeop_5.15.0-1052.59~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1062-ibm_5.15.0-1062.65_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1064-intel-iotg_5.15.0-1064.70_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1064-intel-iotg_5.15.0-1064.70~20.04.1+1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1064-nvidia_5.15.0-1064.65_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1064-nvidia-lowlatency_5.15.0-1064.65_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1066-gke_5.15.0-1066.72_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1066-kvm_5.15.0-1066.71_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1067-oracle_5.15.0-1067.73_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1068-gcp_5.15.0-1068.76_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1068-gcp_5.15.0-1068.76~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1069-aws_5.15.0-1069.75_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-1069-aws_5.15.0-1069.75~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-121-generic_5.15.0-121.131_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-5.15.0-121-generic_5.15.0-121.131~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-aws_5.15.0.1069.75~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-aws-lts-22.04_5.15.0.1069.69_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gcp_5.15.0.1068.76~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gcp-lts-22.04_5.15.0.1068.64_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-generic_5.15.0.121.121_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-generic-hwe-20.04_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gke_5.15.0.1066.65_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gke-5.15_5.15.0.1066.65_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gkeop_5.15.0.1052.51_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gkeop-5.15_5.15.0.1052.51_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-gkeop-5.15_5.15.0.1052.59~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-ibm_5.15.0.1062.58_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-intel_5.15.0.1064.70~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-intel-iotg_5.15.0.1064.64_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-intel-iotg_5.15.0.1064.70~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-kvm_5.15.0.1066.62_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-nvidia_5.15.0.1064.64_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-nvidia-lowlatency_5.15.0.1064.64_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-oem-20.04_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-oem-20.04b_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-oem-20.04c_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-oem-20.04d_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-oracle-lts-22.04_5.15.0.1067.63_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-virtual_5.15.0.121.121_amd64.debLinux
Linux kernel (USN-7007-1) linux-image-virtual-hwe-20.04_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-5.15.0-1072-azure_5.15.0-1072.81_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-5.15.0-1072-azure_5.15.0-1072.81~20.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-5.15.0-1072-azure-fde_5.15.0-1072.81.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-azure_5.15.0.1072.81~20.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-azure-cvm_5.15.0.1072.81~20.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-azure-fde-lts-22.04_5.15.0.1072.81.49_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7009-1) linux-image-azure-lts-22.04_5.15.0.1072.70_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7007-2) linux-image-5.15.0-1062-ibm_5.15.0-1062.65~20.04.1_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7007-2) linux-image-5.15.0-1067-oracle_5.15.0-1067.73~20.04.1_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7007-2) linux-image-ibm_5.15.0.1062.65~20.04.1_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7007-2) linux-image-oracle_5.15.0.1067.73~20.04.1_amd64.debLinux
Linux low latency kernel (USN-7007-3) linux-image-5.15.0-121-lowlatency_5.15.0-121.131_amd64.debLinux
Linux low latency kernel (USN-7007-3) linux-image-5.15.0-121-lowlatency_5.15.0-121.131~20.04.1_amd64.debLinux
Linux low latency kernel (USN-7007-3) linux-image-lowlatency_5.15.0.121.110_amd64.debLinux
Linux low latency kernel (USN-7007-3) linux-image-lowlatency-hwe-20.04_5.15.0.121.131~20.04.1_amd64.debLinux
Linux kernel for Microsoft Azure CVM cloud systems (USN-7009-2) linux-image-5.15.0-1072-azure-fde_5.15.0-1072.81~20.04.1.1_amd64.debLinux
Linux kernel for Microsoft Azure CVM cloud systems (USN-7009-2) linux-image-azure-fde_5.15.0.1072.81~20.04.1.49_amd64.debLinux
Kernel-uek-devel update (ELSA-2024-12779) kernel-uek-devel-4.14.35-2047.541.4.1.el7uek.x86_64.rpmLinux
Kernel-uek-debug-devel update (ELSA-2024-12779) kernel-uek-debug-devel-4.14.35-2047.541.4.1.el7uek.x86_64.rpmLinux
Kernel-uek-debug update (ELSA-2024-12779) kernel-uek-debug-4.14.35-2047.541.4.1.el7uek.x86_64.rpmLinux
Kernel-uek-doc update (ELSA-2024-12779) kernel-uek-doc-4.14.35-2047.541.4.1.el7uek.noarch.rpmLinux
Kernel-uek-tools update (ELSA-2024-12779) kernel-uek-tools-4.14.35-2047.541.4.1.el7uek.x86_64.rpmLinux
Kernel-uek update (ELSA-2024-12779) kernel-uek-4.14.35-2047.541.4.1.el7uek.x86_64.rpmLinux
Linux kernel (USN-7089-1) linux-image-6.8.0-1017-azure_6.8.0-1017.20~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-6.8.0-1017-azure-fde_6.8.0-1017.20~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-6.8.0-1017-gcp_6.8.0-1017.19~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-6.8.0-48-generic_6.8.0-48.48_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-6.8.0-48-generic_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-azure_6.8.0-1017.20~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-azure-fde_6.8.0-1017.20~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-gcp_6.8.0-1017.19~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-generic_6.8.0-48.48_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-generic-hwe-22.04_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-generic-hwe-24.04_6.8.0-48.48_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-kvm_6.8.0-48.48_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-oem-22.04_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-oem-22.04a_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-oem-22.04b_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-oem-22.04c_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-oem-22.04d_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-virtual_6.8.0-48.48_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-virtual-hwe-22.04_6.8.0-48.48~22.04.1_amd64.debLinux
Linux kernel (USN-7089-1) linux-image-virtual-hwe-24.04_6.8.0-48.48_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-6.8.0-1014-ibm_6.8.0-1014.14_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-6.8.0-1016-azure_6.8.0-1016.18_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-6.8.0-1016-azure-fde_6.8.0-1016.18_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-6.8.0-1016-gcp_6.8.0-1016.18_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-azure_6.8.0-1016.18_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-azure-fde_6.8.0-1016.18_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-gcp_6.8.0-1016.18_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-ibm_6.8.0-1014.14_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-ibm-classic_6.8.0-1014.14_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7089-2) linux-image-ibm-lts-24.04_6.8.0-1014.14_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-6.8.0-1015-oracle_6.8.0-1015.15~22.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-6.8.0-1015-oracle_6.8.0-1015.16_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-6.8.0-1018-aws_6.8.0-1018.19~22.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-6.8.0-1018-aws_6.8.0-1018.20_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-aws_6.8.0-1018.19~22.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-aws_6.8.0-1018.20_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-oracle_6.8.0-1015.15~22.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7089-3) linux-image-oracle_6.8.0-1015.16_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-6.8.0-1017-nvidia_6.8.0-1017.19_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-6.8.0-1017-nvidia_6.8.0-1017.19~22.04.1_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-6.8.0-1017-nvidia-lowlatency_6.8.0-1017.19.1_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-nvidia_6.8.0-1017.19_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-nvidia-6.8_6.8.0-1017.19~22.04.1_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-nvidia-hwe-22.04_6.8.0-1017.19~22.04.1_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7095-1) linux-image-nvidia-lowlatency_6.8.0-1017.19.1_amd64.debLinux
Linux kernel for OEM systems (USN-7089-4) linux-image-6.8.0-1016-oem_6.8.0-1016.16_amd64.debLinux
Linux kernel for OEM systems (USN-7089-4) linux-image-oem-24.04_6.8.0-1016.16_amd64.debLinux
Linux kernel for OEM systems (USN-7089-4) linux-image-oem-24.04a_6.8.0-1016.16_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-7089-6) linux-image-6.8.0-1013-gke_6.8.0-1013.17_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-7089-6) linux-image-gke_6.8.0-1013.17_amd64.debLinux
Linux low latency kernel (USN-7089-7) linux-image-6.8.0-48-lowlatency_6.8.0-48.48.3_amd64.debLinux
Linux low latency kernel (USN-7089-7) linux-image-6.8.0-48-lowlatency_6.8.0-48.48.3~22.04.1_amd64.debLinux
Linux low latency kernel (USN-7089-7) linux-image-lowlatency_6.8.0-48.48.3_amd64.debLinux
Linux low latency kernel (USN-7089-7) linux-image-lowlatency-hwe-22.04_6.8.0-48.48.3~22.04.1_amd64.debLinux
Linux low latency kernel (USN-7089-7) linux-image-lowlatency-hwe-24.04_6.8.0-48.48.3_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-7156-1) linux-image-6.8.0-1002-gkeop_6.8.0-1002.4_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-7156-1) linux-image-gkeop_6.8.0-1002.4_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-7156-1) linux-image-gkeop-6.8_6.8.0-1002.4_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234