• 公告ID (KylinSec-SA-2024-3307)

摘要:

In the Linux kernel, the following vulnerability has been resolved:

qibfs: fix dentry leak

simple_recursive_removal() drops the pinning references to all positives
in subtree. For the cases when its argument has been kept alive by
the pinning alone that's exactly the right thing to do, but here
the argument comes from dcache lookup, that needs to be balanced by
explicit dput().

Fucked-up-by: Al Viro <viro@zeniv.linux.org.uk&gt;

安全等级: Low

公告ID: KylinSec-SA-2024-3307

发布日期: 2024年8月20日

关联CVE: CVE-2024-36947  

  • 详细介绍

1. 漏洞描述

   

In the Linux kernel, the following vulnerability has been resolved:

qibfs: fix dentry leak

simple_recursive_removal() drops the pinning references to all positives
in subtree. For the cases when its argument has been kept alive by
the pinning alone that's exactly the right thing to do, but here
the argument comes from dcache lookup, that needs to be balanced by
explicit dput().

Fucked-up-by: Al Viro <viro@zeniv.linux.org.uk&gt;

2. 影响范围

cve名称 产品 组件 是否受影响
CVE-2024-36947 KY3.4-5A kernel Unaffected
CVE-2024-36947 KY3.5.2 kernel Unaffected

3. 影响组件

    无

4. 修复版本

    无

5. 修复方法

   无

6. 下载链接

    无
上一篇:KylinSec-SA-2024-3306 下一篇:KylinSec-SA-2024-3308