๐Ÿ” CVE Alert

CVE-2024-50294

MEDIUM 4.7

rxrpc: Fix missing locking causing hanging calls

CVSS Score
4.7
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing locking causing hanging calls If a call gets aborted (e.g. because kafs saw a signal) between it being queued for connection and the I/O thread picking up the call, the abort will be prioritised over the connection and it will be removed from local->new_client_calls by rxrpc_disconnect_client_call() without a lock being held. This may cause other calls on the list to disappear if a race occurs. Fix this by taking the client_call_lock when removing a call from whatever list its ->wait_link happens to be on.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Nov 19, 2024
Last Updated May 11, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new medium vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
9d35d880e0e4a3ab32d8c12f9e4d76198aadd42d < 996a7208dadbf2cdda8d51444d5ee1fdd1ccbc92 9d35d880e0e4a3ab32d8c12f9e4d76198aadd42d < b1fdb0bb3b6513f5bd26f92369fd6ac1a2422d8b 9d35d880e0e4a3ab32d8c12f9e4d76198aadd42d < fc9de52de38f656399d2ce40f7349a6b5f86e787
Linux / Linux
6.2

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/996a7208dadbf2cdda8d51444d5ee1fdd1ccbc92 git.kernel.org: https://git.kernel.org/stable/c/b1fdb0bb3b6513f5bd26f92369fd6ac1a2422d8b git.kernel.org: https://git.kernel.org/stable/c/fc9de52de38f656399d2ce40f7349a6b5f86e787