CVE-2024-41020

Source
https://cve.org/CVERecord?id=CVE-2024-41020
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-41020.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-41020
Downstream
Related
Published
2024-07-29T13:34:21.617Z
Modified
2026-03-20T12:36:38.636989Z
Summary
filelock: Fix fcntl/close race recovery compat path
Details

In the Linux kernel, the following vulnerability has been resolved:

filelock: Fix fcntl/close race recovery compat path

When I wrote commit 3cad1bc01041 ("filelock: Remove locks reliably when fcntl/close race is detected"), I missed that there are two copies of the code I was patching: The normal version, and the version for 64-bit offsets on 32-bit kernels. Thanks to Greg KH for stumbling over this while doing the stable backport...

Apply exactly the same fix to the compat path for 32-bit kernels.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/41xxx/CVE-2024-41020.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c293621bbf678a3d85e3ed721c3921c8a670610d
Fixed
a561145f3ae973ebf3e0aee41624e92a6c5cb38d
Fixed
4c43ad4ab41602201d34c66ac62130fe339d686f
Fixed
911cc83e56a2de5a40758766c6a70d6998248860
Fixed
53e21cfa68a7d12de378b7116c75571f73e0dfa2
Fixed
f4d0775c6e2f1340ca0725f0337de149aaa989ca
Fixed
73ae349534ebc377328e7d21891e589626c6e82c
Fixed
5b0af8e4c70e4b884bb94ff5f0cd49ecf1273c02
Fixed
ed898f9ca3fa32c56c858b463ceb9d9936cc69c4
Fixed
f8138f2ad2f745b9a1c696a05b749eabe44337ea

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-41020.json"