PT-2024-35601 · Linux+8 · Linux Kernel+8

Chuck Lever

+1

·

Published

2024-11-15

·

Updated

2025-06-09

·

CVE-2024-53136

CVSS v3.1

4.7

Medium

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A vulnerability in the Linux kernel has been resolved. The issue was in the mm module, specifically regarding shmem, and was causing deadlocks when accessing tmpfs over NFS. The change was meant to fix a data-race in shmem getattr(), but it was reverted as suggested by Chuck. As Hugh commented, the change was added just to silence a syzbot sanitizer splat, and it was added where there has never been any practical problem.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-17888
AZL-54185
BDU:2025-03312
CVE-2024-53136
DLA-4008-1
DLA-4075-1
INFSA-2025_6966
MGASA-2024-0392
MGASA-2024-0393
OESA-2025-1032
OESA-2025-1036
OPENSUSE-SU-2025_0117-1
OPENSUSE-SU-2025_0153-1
OPENSUSE-SU-2025_0154-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2025:0117-1
SUSE-SU-2025:0153-1
SUSE-SU-2025:0154-1
SUSE-SU-2025:0236-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0236-1
USN-7387-1
USN-7387-2
USN-7387-3
USN-7388-1
USN-7391-1
USN-7392-1
USN-7392-2
USN-7392-3
USN-7392-4
USN-7407-1
USN-7421-1
USN-7459-1
USN-7459-2
USN-7463-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu