Kernel: deadlock leading to denial of service in tipc_crypto_key_revoke
Published Jan 17, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.16%
Description
A denial of service vulnerability was found in tipc_crypto_key_revoke in net/tipc/crypto.c in the Linux kernel’s TIPC subsystem. This flaw allows guests with local user privileges to trigger a deadlock and potentially crash the system.
Affected products
No data.
Configuration 1
- < 6.6
- 6.6
- 6.6
- 6.6
- 6.6
Configuration 2
- 8.0
- 9.0
No data.
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Not affected | n/a |
No package ranges for this CVE.
Remediation
Vendor solution
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
References (5)
- https://access.redhat.com/security/cve/CVE-2024-0641 vdb-entryx_refsource_REDHATThird Party AdvisoryVendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2258757 issue-trackingx_refsource_REDHATIssue TrackingPatch
- https://github.com/torvalds/linux/commit/08e50cf071847323414df0835109b6f3560d44f5 Patch
- https://nvd.nist.gov/vuln/detail/CVE-2024-0641
- https://www.cve.org/CVERecord?id=CVE-2024-0641
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2024-0641 | vdb-entryx_refsource_REDHATThird Party AdvisoryVendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2258757 | issue-trackingx_refsource_REDHATIssue TrackingPatch | |
| https://github.com/torvalds/linux/commit/08e50cf071847323414df0835109b6f3560d44f5 | Patch | |
| https://nvd.nist.gov/vuln/detail/CVE-2024-0641 | ||
| https://www.cve.org/CVERecord?id=CVE-2024-0641 |
Change history (0)
No recorded changes yet.