PT-2024-10501 · Linux+6 · Linux Kernel+6

Published

2024-03-31

·

Updated

2025-09-29

·

CVE-2024-40981

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.8.0-rc7-syzkaller-g707081b61156
Description The vulnerability is related to the batman-adv component in the Linux kernel, which is prone to soft lockups due to incorrect handling of empty buckets in the batadv purge orig ref() function. This issue can cause the CPU to become stuck for an extended period, leading to a denial-of-service (DoS) condition. The root cause of the problem is unknown, but the patch aims to avoid spending too much time in the affected function and potentially gather more interesting reports.
Recommendations To resolve this issue, update the Linux kernel to a version that includes the fix for the batman-adv vulnerability. Specifically, versions 6.8.0-rc7-syzkaller-g707081b61156 and later should include the necessary patch. If updating is not feasible, consider disabling the batman-adv component or restricting its use to minimize the risk of exploitation.

Exploit

Fix

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-12537
ALT-PU-2024-13979
ALT-PU-2024-14046
ALT-PU-2024-9967
BDU:2025-01052
CVE-2024-40981
DLA-4008-1
DSA-5730-1
DSA-5731-1
OESA-2024-1941
OESA-2024-1942
OESA-2024-1944
OESA-2024-1960
OPENSUSE-SU-2024_2947-1
SUSE-SU-2024:2894-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2947-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3383-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
USN-6999-1
USN-6999-2
USN-7003-1
USN-7003-2
USN-7003-3
USN-7003-4
USN-7003-5
USN-7004-1
USN-7005-1
USN-7005-2
USN-7006-1
USN-7007-1
USN-7007-2
USN-7007-3
USN-7008-1
USN-7009-1
USN-7009-2
USN-7019-1
USN-7029-1
USN-7332-1
USN-7332-2
USN-7332-3
USN-7342-1
USN-7344-1
USN-7344-2

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu