PT-2024-7038 · Linux+6 · Linux Kernel+6

Baokun Li

·

Published

2024-09-01

·

Updated

2026-03-13

·

CVE-2024-46786

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.52
Description A vulnerability in the Linux kernel has been resolved, which is related to the fscache module. The fscache cookie lru timer is initialized when the fscache module is inserted, but it is not deleted when the module is removed. If timer reduce() is called before removing the fscache module, the fscache cookie lru timer will be added to the timer list of the current CPU, triggering a use-after-free in the softIRQ after removing the module. This can lead to a page fault and potentially allow an attacker to impact the confidentiality, integrity, and availability of protected information.
Recommendations To resolve this issue, update the Linux kernel to version 6.6.52 or later. As a temporary workaround, consider disabling the fscache module until a patch is available. Restrict access to the vulnerable module to minimize the risk of exploitation. Avoid using the fscache cookie lru timer in the affected API endpoint until the issue is resolved.

Exploit

Fix

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-13979
ALT-PU-2024-14046
BDU:2024-08295
CVE-2024-46786
ECHO-9565-BFCA-8AA6
INFSA-2025_6966
MGASA-2024-0316
MGASA-2024-0318
OESA-2024-2181
OPENSUSE-SU-2024_3551-1
OPENSUSE-SU-2024_3561-1
OPENSUSE-SU-2024_3564-1
OPENSUSE-SU-2024_3587-1
OPENSUSE-SU-2024_3592-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2024:3551-1
SUSE-SU-2024:3553-1
SUSE-SU-2024:3561-1
SUSE-SU-2024:3564-1
SUSE-SU-2024:3569-1
SUSE-SU-2024:3587-1
SUSE-SU-2024:3592-1
SUSE-SU-2025:20073-1
SUSE-SU-2025:20077-1
USN-7154-1
USN-7154-2
USN-7155-1
USN-7156-1
USN-7196-1

Affected Products

Alt Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu