• CVE-2024-46713

发布时间: 2024年11月29日

修改时间: 2024年11月29日

概要

In the Linux kernel, the following vulnerability has been resolved: perf/aux: Fix AUX buffer serialization Ole reported that event->mmap_mutex is strictly insufficient to serialize the AUX buffer, add a per RB mutex to fully serialize it. Note that in the lock order comment the perf_event::mmap_mutex order was already wrong, that is, it nesting under mmap_lock is not new with this patch.

CVSS v3 指标

NVD openEuler
Confidentiality Low
Attack Vector Adjacent
CVSS评分 N/A 5.5
Attack Complexity Low
Privileges Required Low
Scope Unchanged
Integrity Low
User Interaction None
Availability Low

安全公告

公告名 概要 发布时间
KylinSec-SA-2024-4993 kernel security update 2025年7月21日

影响产品

产品 状态
KY3.5.2 kernel Fixed
KY3.5.3 kernel Fixed
V6 kernel Fixed