imPC@ndo IT

Tracker / CVE-2024-40920

CVE-2024-40920

High 7.1

In the Linux kernel, the following vulnerability has been resolved: net: bridge: mst: fix suspicious rcu usage in br_mst_set_state I converted br_mst_set_state to RCU to avoid a vlan use-after-free but forgot to change the vlan group dereference helper. Switch to vlan group RCU deref helper to fix the suspicious rcu usage warning.

Affected products and versions

linux linux_kernel
linux linux_kernel · 6.1.93 → 6.1.95
linux linux_kernel · 6.6.33 → 6.6.35
linux linux_kernel · 6.8.12 → 6.9
linux linux_kernel · 6.9.3 → 6.9.6

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References