Back

HIGH

s390/dasd: fix Oops in dasd_alias_get_start_dev due to missing pavgroup

Published Apr 28, 2024

Description

Fix Oops in dasd_alias_get_start_dev() function caused by the pavgroup pointer being NULL.

The pavgroup pointer is checked on the entrance of the function but without the lcu->lock being held. Therefore there is a race window between dasd_alias_get_start_dev() and _lcu_update() which sets pavgroup to NULL with the lcu->lock held.

Fix by checking the pavgroup pointer with lcu->lock held.

Affected products

Remediation

Red Hat statement

No Red Hat products are affected by this vulnerability.

References (13)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Linux
Published Apr 28, 2024
Updated Aug 5, 2026
Reserved Feb 25, 2024
CISA Vulnrichment
Updated Jun 7, 2024
NVD
Status Modified
Modified Aug 4, 2026
Red Hat
Severity Moderate
Public date Apr 28, 2024