Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: dma-buf/sw-sync: don't enable IRQ from sync_print_obj() Since commit a6aa8fca4d79 ("dma-buf/sw-sync: Reduce irqsave/irqrestore from known context") by error replaced spin_unlock_irqrestore() with spin_unlock_irq() for both sync_debugfs_show() and sync_print_obj() despite sync_print_obj() is called from sync_debugfs_show(), lockdep complains inconsistent lock state warning. Use plain spin_{lock,unlock}() for sync_print_obj(), for sync_debugfs_show() is already using spin_{lock,unlock}_irq().
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 4.14 |
Related Weaknesses (CWE)
References
- https://git.kernel.org/stable/c/165b25e3ee9333f7b04f8db43895beacb51582edMailing ListPatch
- https://git.kernel.org/stable/c/1ff116f68560a25656933d5a18e7619cb6773d8aMailing ListPatch
- https://git.kernel.org/stable/c/242b30466879e6defa521573c27e12018276c33aMailing ListPatch
- https://git.kernel.org/stable/c/8a283cdfc8beeb14024387a925247b563d614e1eMailing ListPatch
- https://git.kernel.org/stable/c/9d75fab2c14a25553a1664586ed122c316bd1878Mailing ListPatch
- https://git.kernel.org/stable/c/a4ee78244445ab73af22bfc5a5fc543963b25aefMailing ListPatch
- https://git.kernel.org/stable/c/ae6fc4e6a3322f6d1c8ff59150d8469487a73dd8Mailing ListPatch
- https://git.kernel.org/stable/c/b794918961516f667b0c745aebdfebbb8a98df39Mailing ListPatch
- https://git.kernel.org/stable/c/165b25e3ee9333f7b04f8db43895beacb51582edMailing ListPatch
- https://git.kernel.org/stable/c/1ff116f68560a25656933d5a18e7619cb6773d8aMailing ListPatch
- https://git.kernel.org/stable/c/242b30466879e6defa521573c27e12018276c33aMailing ListPatch
- https://git.kernel.org/stable/c/8a283cdfc8beeb14024387a925247b563d614e1eMailing ListPatch
- https://git.kernel.org/stable/c/9d75fab2c14a25553a1664586ed122c316bd1878Mailing ListPatch
- https://git.kernel.org/stable/c/a4ee78244445ab73af22bfc5a5fc543963b25aefMailing ListPatch
- https://git.kernel.org/stable/c/ae6fc4e6a3322f6d1c8ff59150d8469487a73dd8Mailing ListPatch
FAQ
What is CVE-2024-38780?
CVE-2024-38780 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: dma-buf/sw-sync: don't enable IRQ from sync_print_obj() Since commit a6aa8fca4d79 ("dma-buf/sw-sync: Reduce irqsave/irqrestore fro...
How severe is CVE-2024-38780?
CVE-2024-38780 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-38780?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.