PT-2024-6858 · Linux+4 · Linux Kernel+4

Published

2024-09-01

·

Updated

2025-09-29

·

CVE-2024-46838

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to the userfaultfd component of the Linux kernel, where the function BUG ON() is incorrectly used when khugepaged retracts page tables in file mappings without holding the mmap lock. This could potentially lead to a denial of service. The vulnerability is associated with the incorrect removal of page tables, which may cause issues with transhuge pages in both file and anonymous mappings.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-13979
BDU:2024-08080
CVE-2024-46838
OESA-2024-2296
USN-7154-1
USN-7154-2
USN-7155-1
USN-7156-1
USN-7196-1

Affected Products

Alt Linux
Linuxmint
Linux Kernel
Red Os
Ubuntu