CVE-2024-26585 Information

Description

In the Linux kernel the following vulnerability has been resolved:

tls: fix race between tx work scheduling and socket close

Similarly to previous commit the submitting thread (recvmsg/sendmsg) may exit as soon as the async crypto handler calls complete(). Reorder scheduling the work before calling complete(). This seems more logical in the first place as it’s the inverse order of what the submitting thread will do.

Reference

https://git.kernel.org/stable/c/e01e3934a1b2d122919f73bc6ddbe1cdafc4bbdb

Share on: