CVE-2024-53093

high

Description

In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: defer partition scanning We need to suppress the partition scan from occuring within the controller's scan_work context. If a path error occurs here, the IO will wait until a path becomes available or all paths are torn down, but that action also occurs within scan_work, so it would deadlock. Defer the partion scan to a different context that does not block scan_work.

References

https://git.kernel.org/stable/c/a91b7eddf45afeeb9c5ece11dddff5de0921b00f

https://git.kernel.org/stable/c/60de2e03f984cfbcdc12fa552f95087c35a05a98

https://git.kernel.org/stable/c/4a57f42e5ed42cb8f1beb262c4f6d3e698939e4e

https://git.kernel.org/stable/c/1f021341eef41e77a633186e9be5223de2ce5d48

Details

Source: Mitre, NVD

Published: 2024-11-21

Risk Information

CVSS v2

Base Score: 7.2

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High