vulnerability

Huawei EulerOS: CVE-2024-49891: kernel security update

Severity
5
CVSS
(AV:L/AC:L/Au:S/C:N/I:N/A:C)
Published
2024-10-21
Added
2025-02-11
Modified
2025-02-19

Description

In the Linux kernel, the following vulnerability has been resolved:

scsi: lpfc: Validate hdwq pointers before dereferencing in reset/errata paths

When the HBA is undergoing a reset or is handling an errata event, NULL ptr
dereference crashes may occur in routines such as
lpfc_sli_flush_io_rings(), lpfc_dev_loss_tmo_callbk(), or
lpfc_abort_handler().

Add NULL ptr checks before dereferencing hdwq pointers that may have been
freed due to operations colliding with a reset or errata event handler.

Solution(s)

huawei-euleros-2_0_sp12-upgrade-bpftoolhuawei-euleros-2_0_sp12-upgrade-kernelhuawei-euleros-2_0_sp12-upgrade-kernel-abi-stablelistshuawei-euleros-2_0_sp12-upgrade-kernel-toolshuawei-euleros-2_0_sp12-upgrade-kernel-tools-libshuawei-euleros-2_0_sp12-upgrade-python3-perf
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.