sock_map: Add a cond_resched() in sock_hash_free()
Published Oct 21, 2024
5.5
MEDIUMCVSS 3.1
EPSS 0.23%
Description
Several syzbot soft lockup reports all have in common sock_hash_free()
If a map with a large number of buckets is destroyed, we need to yield the cpu when needed.
Affected products
-
- Version 5.4.49StatusaffectedConstraints<5.4.285
- Version 5.7.6StatusaffectedConstraints<5.8
- Version
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 5.8StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<5.8
- Version 5.10.227StatusunaffectedConstraints<=5.10.*
- Version 5.15.168StatusunaffectedConstraints<=5.15.*
- Version 5.4.285StatusunaffectedConstraints<=5.4.*
- Version 6.1.113StatusunaffectedConstraints<=6.1.*
- Version 6.10.13StatusunaffectedConstraints<=6.10.*
- Version 6.11.2StatusunaffectedConstraints<=6.11.*
- Version 6.12StatusunaffectedConstraints<=*
- Version 6.6.54StatusunaffectedConstraints<=6.6.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| |||||||||||||||||||||||||||||||||
| Linux | Linux | unaffected |
| |||||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 5.4.49 · < 5.5
- ≥ 5.7.6 · < 5.8
- ≥ 5.8 · < 5.10.227
- ≥ 5.11 · < 5.15.168
- ≥ 5.16 · < 6.1.113
- ≥ 6.2 · < 6.6.54
- ≥ 6.7 · < 6.10.13
- ≥ 6.11 · < 6.11.2
No data.
Red Hat Enterprise Linux 9
kernel-0:5.14.0-570.12.1.el9_6
Fixed · RHSA-2025:6966
Red Hat Enterprise Linux 9
kernel-0:5.14.0-570.12.1.el9_6
Fixed · RHSA-2025:6966
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Will not fix
Red Hat Enterprise Linux 8
kernel-rt
Will not fix
Red Hat Enterprise Linux 9
kernel-rt
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-570.12.1.el9_6 | Fixed | RHSA-2025:6966 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-570.12.1.el9_6 | Fixed | RHSA-2025:6966 |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Will not fix | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Will not fix | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
References (17)
- https://access.redhat.com/security/cve/CVE-2024-47710 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2320168 Issue Tracking
- https://cert-portal.siemens.com/productcert/html/ssa-265688.html
- https://cert-portal.siemens.com/productcert/html/ssa-355557.html
- https://git.kernel.org/stable/c/04f62c012e0e4683e572b30baf6004ca0a3f6772 Patch
- https://git.kernel.org/stable/c/1a11a1a53255ddab8a903cdae01b9d3eb2c1a47b Patch
- https://git.kernel.org/stable/c/80bd490ac0a3b662a489e17d8eedeb1e905a3d40 Patch
- https://git.kernel.org/stable/c/984648aac87a6a1c8fd61663bec3f7b61eafad5e Patch
- https://git.kernel.org/stable/c/ae8c1b3e7353ad240b829eabac7ba2584b2c6bdc Patch
- https://git.kernel.org/stable/c/b1339be951ad31947ae19bc25cb08769bf255100 Patch
- https://git.kernel.org/stable/c/bc05f6855642cff3c0eeb63060b35d8c4f8a851d
- https://git.kernel.org/stable/c/cd10abf41bae55c9d2b93f34a516dbf52626bcb7 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
- https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html
- https://lore.kernel.org/linux-cve-announce/2024102118-CVE-2024-47710-3882@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2024-47710
- https://www.cve.org/CVERecord?id=CVE-2024-47710
Change history (0)
No recorded changes yet.