PT-2024-21580 · Linux+5 · Linux Kernel+5

Published

2024-02-09

·

Updated

2025-12-04

·

CVE-2024-26917

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a potential deadlock in the FCoE (Fibre Channel over Ethernet) component of the Linux kernel's SCSI subsystem. A commit that changed spin locks from "bh" to "irqsave" caused interrupts to be lost for FCoE devices. To address this, a work queue should be used instead, which will be implemented in a separate commit.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-02909
CVE-2024-26917
DLA-3840-1
DLA-3842-1
DSA-5681-1
OESA-2024-1622
OESA-2024-2324
OPENSUSE-SU-2024_1644-1
OPENSUSE-SU-2024_1659-1
OPENSUSE-SU-2024_1663-1
SUSE-SU-2024:1644-1
SUSE-SU-2024:1659-1
SUSE-SU-2024:1663-1
USN-6895-1
USN-6895-2
USN-6895-3
USN-6895-4
USN-6900-1

Affected Products

Astra Linux
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu