Lucene search

K
osvGoogleOSV:CVE-2024-38545
HistoryJun 19, 2024 - 2:15 p.m.

CVE-2024-38545

2024-06-1914:15:00
Google
osv.dev
5
linux kernel
vulnerability
rdma/hns
fix
uaf
cq async event

AI Score

6.8

Confidence

Low

EPSS

0

Percentile

5.0%

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix UAF for cq async event The refcount of CQ is not protected by locks. When CQ asynchronous events and CQ destruction are concurrent, CQ may have been released, which will cause UAF. Use the xa_lock() to protect the CQ refcount.

AI Score

6.8

Confidence

Low

EPSS

0

Percentile

5.0%