CVE-2024-26862: packet: annotate data-races around ignore_outgoing

Published Apr 17, 2024
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

packet: annotate data-races around ignoreoutgoing

ignoreoutgoing is read locklessly from devqueuexmitnit() and packetgetsockopt()

Add appropriate READONCE()/WRITEONCE() annotations.

syzbot reported:

BUG: KCSAN: data-race in devqueuexmitnit / packetsetsockopt

write to 0xffff888107804542 of 1 bytes by task 22618 on cpu 0: packetsetsockopt+0xd83/0xfd0 net/packet/afpacket.c:4003 dosocksetsockopt net/socket.c:2311 [inline] syssetsockopt+0x1d8/0x250 net/socket.c:2334 dosyssetsockopt net/socket.c:2343 [inline] sesyssetsockopt net/socket.c:2340 [inline] x64syssetsockopt+0x66/0x80 net/socket.c:2340 dosyscall64+0xd3/0x1d0 entrySYSCALL64afterhwframe+0x6d/0x75

read to 0xffff888107804542 of 1 bytes by task 27 on cpu 1: devqueuexmitnit+0x82/0x620 net/core/dev.c:2248 xmitone net/core/dev.c:3527 [inline] devhardstartxmit+0xcc/0x3f0 net/core/dev.c:3547 devqueuexmit+0xf24/0x1dd0 net/core/dev.c:4335 devqueuexmit include/linux/netdevice.h:3091 [inline] batadvsendskbpacket+0x264/0x300 net/batman-adv/send.c:108 batadvsendbroadcastskb+0x24/0x30 net/batman-adv/send.c:127 batadvivogmsendtoif net/batman-adv/bativogm.c:392 [inline] batadvivogmemit net/batman-adv/bativogm.c:420 [inline] batadvivsendoutstandingbatogmpacket+0x3f0/0x4b0 net/batman-adv/bativogm.c:1700 processonework kernel/workqueue.c:3254 [inline] processscheduledworks+0x465/0x990 kernel/workqueue.c:3335 workerthread+0x526/0x730 kernel/workqueue.c:3416 kthread+0x1d1/0x210 kernel/kthread.c:388 retfromfork+0x4b/0x60 arch/x86/kernel/process.c:147 retfromforkasm+0x1a/0x30 arch/x86/entry/entry64.S:243

value changed: 0x00 -> 0x01

Reported by Kernel Concurrency Sanitizer on: CPU: 1 PID: 27 Comm: kworker/u8:1 Tainted: G W 6.8.0-syzkaller-08073-g480e035fc4c7 #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 02/29/2024 Workqueue: batevents batadvivsendoutstandingbatogmpacket

Other sources

In the Linux kernel, the following vulnerability has been resolved:

packet: annotate data-races around ignoreoutgoing

The Linux kernel CVE team has assigned CVE-2024-26862 to this issue.

Upstream advisory: https://lore.kernel.org/linux-cve-announce/2024041736-CVE-2024-26862-2605@gregkh/T

Red Hat

Affected Software

17 affected componentsFixes available
redhat/kernel<5.4.273
5.4.273
redhat/kernel<5.10.214
5.10.214
redhat/kernel<5.15.153
5.15.153
redhat/kernel<6.1.83
6.1.83
redhat/kernel<6.6.23
6.6.23
redhat/kernel<6.7.11
6.7.11
redhat/kernel<6.8.2
6.8.2
redhat/kernel<6.9
6.9
Linux Linux kernel>=4.20<5.4.273
Linux Linux kernel>=5.5<5.10.214
Linux Linux kernel>=5.11<5.15.153
Linux Linux kernel>=5.16<6.1.83
Linux Linux kernel>=6.2<6.6.23
Linux Linux kernel>=6.7<6.7.11
Linux Linux kernel>=6.8<6.8.2
Debian Debian Linux=10.0
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-16.12.27-1

Event History

Apr 17, 2024
CVE Published
via MITRE·10:27 AM
Data Sourced
via MITRE·10:27 AM
Description
Data Sourced
via Red Hat·06:47 PM
DescriptionSeverityAffected Software
Jun 8, 2024
Data Sourced
via Launchpad·01:07 AM
Description
May 10, 2025
Data Sourced
via Ubuntu·02:22 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2024-26862?

CVE-2024-26862 has a medium severity rating due to its impact on data races in the Linux kernel.

2

How do I fix CVE-2024-26862?

To fix CVE-2024-26862, update your Linux kernel to the latest available version that includes the patch.

3

Which versions of the Linux kernel are affected by CVE-2024-26862?

CVE-2024-26862 affects multiple versions of the Linux kernel, including versions prior to 5.4.273, 5.10.214, and others.

4

What are the consequences of exploiting CVE-2024-26862?

Exploitation of CVE-2024-26862 could potentially lead to data corruption or instability in systems utilizing affected kernel versions.

5

Is there a known exploit for CVE-2024-26862?

As of now, there are no publicly known exploits for CVE-2024-26862, but its existence poses a risk in affected systems.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203