CVE-2024-57839 – NFS Linux Kernel Readahead Hang Vulnerability

The following table lists the changes that have been made to the
CVE-2024-57839 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    Jan. 11, 2025

    Action Type Old Value New Value
    Added Description In the Linux kernel, the following vulnerability has been resolved:

    Revert “readahead: properly shorten readahead when falling back to do_page_cache_ra()”

    This reverts commit 7c877586da3178974a8a94577b6045a48377ff25.

    Anders and Philippe have reported that recent kernels occasionally hang
    when used with NFS in readahead code. The problem has been bisected to
    7c877586da3 (“readahead: properly shorten readahead when falling back to
    do_page_cache_ra()”). The cause of the problem is that ra->size can be
    shrunk by read_pages() call and subsequently we end up calling
    do_page_cache_ra() with negative (read huge positive) number of pages.
    Let’s revert 7c877586da3 for now until we can find a proper way how the
    logic in read_pages() and page_cache_ra_order() can coexist. This can
    lead to reduced readahead throughput due to readahead window confusion but
    that’s better than outright hangs.

    Added Reference https://git.kernel.org/stable/c/85351e4941a253e4c50fb7048bfc19b60b4ec44b
    Added Reference https://git.kernel.org/stable/c/a220d6b95b1ae12c7626283d7609f0a1438e6437
Share the Post:

Related Posts