PT-2025-3621 · Linux+7 · Linux Kernel+7

Syzbot

·

Published

2024-12-06

·

Updated

2025-10-03

·

CVE-2024-57896

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.74
Description A use-after-free vulnerability in the Linux kernel has been resolved. The issue occurs when the cleaner kthread is stopped during the unmount path, but a worker from the delalloc workers queue may still be running and try to wake up the already destroyed cleaner kthread, resulting in a use-after-free on the task struct. The vulnerability was reported by Syzbot with a stack trace showing the error in lock acquire.
Recommendations To resolve the issue, update the Linux kernel to version 6.6.74 or later. As a temporary workaround, consider disabling the submit compressed extents() function until a patch is available. Restrict access to the vulnerable btrfs work helper() function to minimize the risk of exploitation. Avoid using the btrfs add delayed iput() function in the affected API endpoint until the issue is resolved.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-1057
ALT-PU-2025-12647
ALT-PU-2025-1879
ALT-PU-2025-1925
ALT-PU-2025-3483
ALT-PU-2025-3507
ALT-PU-2025-5437
AZL-55842
AZL-55863
BDU:2025-02812
CVE-2024-57896
DLA-4075-1
DLA-4076-1
MGASA-2025-0030
MGASA-2025-0032
OESA-2025-1667
OESA-2025-1668
OESA-2025-1669
OESA-2025-1729
OPENSUSE-SU-2025_0428-1
OPENSUSE-SU-2025_0499-1
OPENSUSE-SU-2025_0557-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0428-1
SUSE-SU-2025:0499-1
SUSE-SU-2025:0557-1
SUSE-SU-2025:0565-1
SUSE-SU-2025:0834-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0428-1
SUSE-SU-2025_0499-1
SUSE-SU-2025_0557-1
SUSE-SU-2025_0834-1
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1
USN-7387-1
USN-7387-2
USN-7387-3
USN-7388-1
USN-7389-1
USN-7390-1
USN-7407-1
USN-7421-1
USN-7458-1
USN-7459-1
USN-7459-2
USN-7513-1
USN-7513-2
USN-7513-3
USN-7513-4
USN-7513-5
USN-7514-1
USN-7515-1
USN-7515-2
USN-7522-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu