#VU100124 Improper locking in Linux kernel - CVE-2024-50174
Published: November 8, 2024 / Updated: May 12, 2025
Linux kernel
Linux Foundation
Description
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper locking within the panthor_group_destroy(), panthor_group_get_state() and panthor_job_create() functions in drivers/gpu/drm/panthor/panthor_sched.c. A local user can perform a denial of service (DoS) attack.
Remediation
External links
- https://git.kernel.org/stable/c/8a585d553c11965332d7a2d74e79ef92a42bfc87
- https://git.kernel.org/stable/c/44742138d151c3a945460ae7beff8ae45ac0bf58
- https://git.kernel.org/stable/c/cac075706f298948898b1f63e81709df42afa75d
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.10.14
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.11.3
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.12