CVE-2024-26917

critical

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: Revert "scsi: fcoe: Fix potential deadlock on &fip->ctlr_lock" This reverts commit 1a1975551943f681772720f639ff42fbaa746212. This commit causes interrupts to be lost for FCoE devices, since it changed sping locks from "bh" to "irqsave". Instead, a work queue should be used, and will be addressed in a separate commit.

References

https://git.kernel.org/stable/c/977fe773dcc7098d8eaf4ee6382cb51e13e784cb

https://git.kernel.org/stable/c/94a600226b6d0ef065ee84024b450b566c5a87d6

https://git.kernel.org/stable/c/7d4e19f7ff644c5b79e8271df8ac2e549b436a5b

https://git.kernel.org/stable/c/6bb22ac1d11d7d20f91e7fd2e657a9e5f6db65e0

https://git.kernel.org/stable/c/5b8f473c4de95c056c1c767b1ad48c191544f6a5

https://git.kernel.org/stable/c/2996c7e97ea7cf4c1838a1b1dbc0885934113783

https://git.kernel.org/stable/c/25675159040bffc7992d5163f3f33ba7d0142f21

https://git.kernel.org/stable/c/2209fc6e3d7727d787dc6ef9baa1e9eae6b1295b

Details

Source: Mitre, NVD

Published: 2024-04-17

Updated: 2024-04-17

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical