Lucene search

K
redhatcveRedhat.comRH:CVE-2024-26658
HistoryApr 02, 2024 - 11:40 p.m.

CVE-2024-26658

2024-04-0223:40:22
redhat.com
access.redhat.com
6
linux kernel
vulnerability
cve-2024-26658
bcachefs
lockdep warning
snapshotting
mongodb
data volume

6.2 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.0%

A vulnerability was found in the bcachefs Linux kernel module which allows to a circular locking dependency, triggering a deadlock scenario during snapshot creation operations. This occurred due to the unconditional acquisition of s_umount in __bch2_ioctl_subvolume_create(), conflicting with existing locks held by other threads which leads to a deadlock situations.

Mitigation

Red Hat has investigated whether a possible mitigation exists for this issue, and has not been able to identify a practical example. Please update the affected package as soon as possible.

6.2 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.0%

Related for RH:CVE-2024-26658