In the Linux kernel, the following vulnerability has been resolved:
x86/kexec: Fix bug with call depth tracking
The call to cc_platform_has() triggers a fault and system crash if call depth
tracking is active because the GS segment has been reset by load_segments() and
GS_BASE is now 0 but call depth tracking uses per-CPU variables to operate.
Call cc_platform_has() earlier in the function when GS is still valid.
[ bp: Massage. ]
Metrics
Affected Vendors & Products
References
History
Thu, 12 Sep 2024 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 11 Sep 2024 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: Linux
Published: 2024-07-12T12:25:18.490Z
Updated: 2025-05-04T09:18:30.668Z
Reserved: 2024-07-12T12:17:45.588Z
Link: CVE-2024-40944

Updated: 2024-08-02T04:39:55.992Z

Status : Awaiting Analysis
Published: 2024-07-12T13:15:16.753
Modified: 2024-11-21T09:31:55.347
Link: CVE-2024-40944
