PT-2024-33703 · Linux+6 · Linux Kernel+6

Gerardo Molina Sabido

·

Published

2024-09-05

·

Updated

2025-09-29

·

CVE-2024-49856

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.6.58
Description: A deadlock issue in the Linux kernel's SGX NUMA node search has been resolved. The problem occurred when the current node did not have an EPC section configured by firmware and all other EPC sections were used up, causing the CPU to hang in a while loop indefinitely, leading to a soft lockup. This issue was not related to the requirement for functionality, as setting up an EPC section on each node is not necessary, but rather enhances performance. The loop has been reworked to start and end on a node that has SGX memory, avoiding the deadlock.
Recommendations: For Linux kernel versions prior to 6.6.58, update to version 6.6.58 or later to resolve the issue. As a temporary workaround, consider reworking the loop to start and end on a node that has SGX memory to avoid the deadlock. Restrict access to the SGX NUMA node search functionality to minimize the risk of exploitation until the update can be applied.

Exploit

Fix

Infinite Loop

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-14046
ALT-PU-2024-14268
AZL-50709
AZL-50963
BDU:2025-03119
CVE-2024-49856
DLA-4008-1
INFSA-2025_6966
MGASA-2024-0344
MGASA-2024-0345
OESA-2024-2492
OESA-2025-1014
OESA-2025-1015
OESA-2025-1035
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2025:14705-1
RHSA-2025:6966
RHSA-2025_6966
USN-7166-1
USN-7166-2
USN-7166-3
USN-7166-4
USN-7186-1
USN-7186-2
USN-7194-1
USN-7276-1
USN-7277-1
USN-7301-1
USN-7303-1
USN-7303-2
USN-7303-3
USN-7304-1
USN-7310-1
USN-7311-1
USN-7384-1
USN-7384-2
USN-7385-1
USN-7386-1
USN-7403-1
USN-7468-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Ubuntu