CVE-2024-26686

EPSS 0.04 % (16th)
0.04% Progress
Advisories 5

In the Linux kernel, the following vulnerability has been resolved:

fs/proc: do_task_stat: use sig->stats_lock to gather the threads/children stats

lock_task_sighand() can trigger a hard lockup. If NR_CPUS threads call
do_task_stat() at the same time and the process has NR_THREADS, it will
spin with irqs disabled O(NR_CPUS * NR_THREADS) time.

Change do_task_stat() to use sig->stats_lock to gather the statistics
outside of ->siglock protected section, in the likely case this code will
run lockless.

CVE Status
PUBLISHED
CNA
kernel.org
Published Date
2024-04-03 15:15:52
(5 months ago)
Updated Date
2024-04-03 17:24:18
(5 months ago)
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...