PT-2024-36921 · Linux+4 · Linux Kernel+4

Jiwei Sun

·

Published

2024-11-13

·

Updated

2025-10-03

·

CVE-2024-56613

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.74
Description A memory leak issue has been identified in the Linux kernel, specifically in the sched/numa component, due to the overwritten vma->numab state. This issue can be consistently reproduced on servers with multiple cores when running the hackbench program of LTP. The problem occurs when multiple threads access a shared vma simultaneously, causing vma->numab state to be overwritten. The issue can be resolved by using the cmpxchg atomic operation to ensure that only one thread executes the vma->numab state assignment.
Recommendations To resolve this issue, update the Linux kernel to version 6.6.74 or later. As a temporary workaround, consider disabling the task numa work() function until a patch is available. Restrict access to the vulnerable vma->numab state variable to minimize the risk of exploitation. Avoid using the hackbench program with the thread argument until the issue is resolved.

Exploit

Fix

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-17881
ALT-PU-2024-17897
ALT-PU-2025-12647
AZL-55172
BDU:2025-07861
CVE-2024-56613
MGASA-2025-0030
MGASA-2025-0032
OESA-2025-1078
OESA-2025-1079
SUSE-SU-2025:02249-1
SUSE-SU-2025:02254-1
SUSE-SU-2025:02307-1
SUSE-SU-2025:02333-1
SUSE-SU-2025:02335-1
SUSE-SU-2025:02538-1
SUSE-SU-2025:02923-1
SUSE-SU-2025:20475-1
SUSE-SU-2025:20483-1
SUSE-SU-2025:20493-1
SUSE-SU-2025:20498-1
SUSE-SU-2025_02249-1
SUSE-SU-2025_02254-1
SUSE-SU-2025_02307-1
SUSE-SU-2025_02333-1
SUSE-SU-2025_02335-1
SUSE-SU-2025_02538-1
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7468-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Linuxmint
Linux Kernel
Suse
Ubuntu