CVE-2024-47739: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.7% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: padata: use integer wrap around to prevent deadlock on seq_nr overflow When submitting more than 2^32 padata objects to padata_do_serial, the current sorting implementation incorrectly sorts padata objects with overflowed seq_nr, causing them to be placed before existing objects in the reorder list. This leads to a deadlock in the serialization process as padata_find_next cannot match padata->seq_nr and pd->processed because the padata instance with overflowed seq_nr will be selected next. To fix this, we use an unsigned integer wrap around to correctly sort padata objects in scenarios with integer overflow.
Affected products
- Linux Linux Kernel: from 5.4, before 5.10.227 (fixed in 5.10.227); from 5.11, before 5.15.168 (fixed in 5.15.168); from 5.16, before 6.1.113 (fixed in 6.1.113); from 6.2, before 6.6.54 (fixed in 6.6.54); from 6.7, before 6.10.13 (fixed in 6.10.13); from 6.11, before 6.11.2 (fixed in 6.11.2)
Published 2024-10-21. Last modified 2026-08-04.