PT-2024-8339 · Linux+6 · Linux Kernel+6
Published
2024-03-05
·
Updated
2025-09-29
·
CVE-2024-35934
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
The vulnerability is related to the net/smc component of the Linux kernel. It involves incorrect locking in the
smc pnet create pnetids list() function, which can lead to extreme rtnl pressure. Many syzbot reports hint that smc acquires rtnl in netns creation for no good reason. The patch returns early from smc pnet net init() if there is no netdevice yet. The issue is associated with the rtnl mutex and pernet ops rwsem locks.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Improper Locking
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu