In the Linux kernel, the following vulnerability has been resolved:
RDMA/hns: Fix Use-After-Free of rsv_qp on HIP08
Currently rsv_qp is freed before ib_unregister_device() is called
on HIP08. During the time interval, users can still dereg MR and
rsv_qp will be used in this process, leading to a UAF. Move the
release of rsv_qp after calling ib_unregister_device() to fix it.
References
Configurations
Configuration 1 (hide)
|
History
23 Oct 2024, 17:29
Type | Values Removed | Values Added |
---|---|---|
References | () https://git.kernel.org/stable/c/2ccf1c75d39949d8ea043d04a2e92d7100ea723d - Patch | |
References | () https://git.kernel.org/stable/c/60595923371c2ebe7faf82536c47eb0c967e3425 - Patch | |
References | () https://git.kernel.org/stable/c/d2d9c5127122745da6e887f451dd248cfeffca33 - Patch | |
References | () https://git.kernel.org/stable/c/dac2723d8bfa9cf5333f477741e6e5fa1ed34645 - Patch | |
References | () https://git.kernel.org/stable/c/fd8489294dd2beefb70f12ec4f6132aeec61a4d0 - Patch | |
Summary |
|
|
First Time |
Linux linux Kernel
Linux |
|
CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
CWE | CWE-416 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
21 Oct 2024, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-10-21 13:15
Updated : 2024-10-23 17:29
NVD link : CVE-2024-47750
Mitre link : CVE-2024-47750
CVE.ORG link : CVE-2024-47750
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-416
Use After Free