PT-2024-6724 · Linux+7 · Linux Kernel+7
Baokun Li
·
Published
2024-07-03
·
Updated
2025-09-29
·
CVE-2024-41058
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel versions prior to 6.6.43
Description:
The vulnerability is related to a slab-use-after-free issue in the
fscache withdraw volume() function. This issue can be triggered when a mount fails or a daemon exits, leading to a use-after-free error. The vulnerability may allow an attacker to impact the confidentiality, integrity, and availability of protected information. The issue is caused by the fscache volume being freed while its reference count may still be 0, and can be avoided by using the new fscache try get volume() helper function to get its reference count.Recommendations:
To resolve the issue, update the Linux kernel to version 6.6.43 or later. As a temporary workaround, consider disabling the
cachefiles withdraw volume() function until a patch is available. Additionally, restrict access to the vulnerable fscache withdraw volume() function to minimize the risk of exploitation.Exploit
Fix
Use After Free
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu