afs: Fix the setting of the server responding flag
Published Oct 21, 2024
7.5
HIGHCVSS 3.1
EPSS 0.57%
Description
In afs_wait_for_operation(), we set transcribe the call responded flag to the server record that we used after doing the fileserver iteration loop - but it's possible to exit the loop having had a response from the server that we've discarded (e.g. it returned an abort or we started receiving data, but the call didn't complete).
This means that op->server might be NULL, but we don't check that before attempting to set the server flag.
Affected products
-
Affected
- ≥ 98f9fda2057b, < 3d51ab44123f
- ≥ 98f9fda2057b, < 97c953572d98
- ≥ 98f9fda2057b, < ff98751bae40
-
Affected
- 6.8
Unaffected
- ≥ 0, < 6.8
- ≥ 6.10.14, ≤ 6.10.*
- ≥ 6.11.3, ≤ 6.11.*
- 6.12-rc2
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
- ≥ 6.8 · < 6.10.14
- ≥ 6.11 · < 6.11.3
- 6.12
No data.
Red Hat Enterprise Linux 9
kernel-0:5.14.0-570.12.1.el9_6
Fixed · RHSA-2025:6966
Red Hat Enterprise Linux 9
kernel-0:5.14.0-570.12.1.el9_6
Fixed · RHSA-2025:6966
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel-rt
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-570.12.1.el9_6 | Fixed | RHSA-2025:6966 |
| Red Hat Enterprise Linux 9 | kernel-0:5.14.0-570.12.1.el9_6 | Fixed | RHSA-2025:6966 |
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
To mitigate this issue, prevent the `afs` kernel module from loading. Create a file named `/etc/modprobe.d/disable-afs.conf` with the following content: `install afs /bin/true`. A system reboot is required for this change to take effect. This mitigation will prevent the use of the AFS filesystem.
References (9)
- https://access.redhat.com/security/cve/CVE-2024-49999 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2320556 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-43673 Advisory
- https://git.kernel.org/stable/c/3d51ab44123f35dd1d646d99a15ebef10f55e263 Patch
- https://git.kernel.org/stable/c/97c953572d98080c5f1486155350bb688041747a Patch
- https://git.kernel.org/stable/c/ff98751bae40faed1ba9c6a7287e84430f7dec64 Patch
- https://lore.kernel.org/linux-cve-announce/2024102139-CVE-2024-49999-e815@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2024-49999
- https://www.cve.org/CVERecord?id=CVE-2024-49999
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
GitHub
No data