In the Linux kernel, the following vulnerability has been resolved: locking/qrwlock: Fix ordering in queued_write_lock_slowpath() While this code is executed with the wait_lock held, a reader can a…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: locking/qrwlock: Fix ordering in queued_write_lock_slowpath() While this code is executed with the wait_lock held, a reader can acquire the lock without holding wait_lock. The writer side loops checking the value with the atomic_cond_read_acquire(), but only truly acquires the lock when the compare-and-exchange is completed successfully which isn’t ordered. This exposes the window between the acquire and the cmpxchg to an A-…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/5902f9453a313be8fe78cbd7e7ca9dba9319fc6e Patch
- https://git.kernel.org/stable/c/82808cc026811fbc3ecf0c0b267a12a339eead56 Patch
- https://git.kernel.org/stable/c/82fa9ced35d88581cffa4a1c856fc41fca96d80a Patch
- https://git.kernel.org/stable/c/84a24bf8c52e66b7ac89ada5e3cfbe72d65c1896 Patch
- https://git.kernel.org/stable/c/d558fcdb17139728347bccc60a16af3e639649d2 Patch
- https://git.kernel.org/stable/c/5902f9453a313be8fe78cbd7e7ca9dba9319fc6e Patch
- https://git.kernel.org/stable/c/82808cc026811fbc3ecf0c0b267a12a339eead56 Patch
- https://git.kernel.org/stable/c/82fa9ced35d88581cffa4a1c856fc41fca96d80a Patch
- https://git.kernel.org/stable/c/84a24bf8c52e66b7ac89ada5e3cfbe72d65c1896 Patch
- https://git.kernel.org/stable/c/d558fcdb17139728347bccc60a16af3e639649d2 Patch
Timeline
- nvd_ingest NVD