CVE-2024-57903: net: restrict SO_REUSEPORT to inet sockets

Published Jan 15, 2025
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

net: restrict SOREUSEPORT to inet sockets

After blamed commit, crypto sockets could accidentally be destroyed from RCU call back, as spotted by zyzbot [1].

Trying to acquire a mutex in RCU callback is not allowed.

Restrict SOREUSEPORT socket option to inet sockets.

v1 of this patch supported TCP, UDP and SCTP sockets, but fcnal-test.sh test needed RAW and ICMP support.

[1] BUG: sleeping function called from invalid context at kernel/locking/mutex.c:562 inatomic(): 1, irqsdisabled(): 0, nonblock: 0, pid: 24, name: ksoftirqd/1 preemptcount: 100, expected: 0 RCU nest depth: 0, expected: 0 1 lock held by ksoftirqd/1/24: #0: ffffffff8e937ba0 (rcucallback){....}-{0:0}, at: rculockacquire include/linux/rcupdate.h:337 [inline] #0: ffffffff8e937ba0 (rcucallback){....}-{0:0}, at: rcudobatch kernel/rcu/tree.c:2561 [inline] #0: ffffffff8e937ba0 (rcucallback){....}-{0:0}, at: rcucore+0xa37/0x17a0 kernel/rcu/tree.c:2823 Preemption disabled at: [<ffffffff8161c8c8>] softirqhandlebegin kernel/softirq.c:402 [inline] [<ffffffff8161c8c8>] handlesoftirqs+0x128/0x9b0 kernel/softirq.c:537 CPU: 1 UID: 0 PID: 24 Comm: ksoftirqd/1 Not tainted 6.13.0-rc3-syzkaller-00174-ga024e377efed #0 Hardware name: Google Google Compute Engine/Google Compute Engine, BIOS Google 09/13/2024 Call Trace: <TASK> dumpstack lib/dumpstack.c:94 [inline] dumpstacklvl+0x241/0x360 lib/dumpstack.c:120 mightresched+0x5d4/0x780 kernel/sched/core.c:8758 mutexlockcommon kernel/locking/mutex.c:562 [inline] mutexlock+0x131/0xee0 kernel/locking/mutex.c:735 cryptoputdefaultnullskcipher+0x18/0x70 crypto/cryptonull.c:179 aeadrelease+0x3d/0x50 crypto/algifaead.c:489 algdorelease crypto/afalg.c:118 [inline] algsockdestruct+0x86/0xc0 crypto/afalg.c:502 skdestruct+0x58/0x5f0 net/core/sock.c:2260 rcudobatch kernel/rcu/tree.c:2567 [inline] rcucore+0xaaa/0x17a0 kernel/rcu/tree.c:2823 handlesoftirqs+0x2d4/0x9b0 kernel/softirq.c:561 runksoftirqd+0xca/0x130 kernel/softirq.c:950 smpbootthreadfn+0x544/0xa30 kernel/smpboot.c:164 kthread+0x2f0/0x390 kernel/kthread.c:389 retfromfork+0x4b/0x80 arch/x86/kernel/process.c:147 retfromforkasm+0x1a/0x30 arch/x86/entry/entry64.S:244 </TASK>

Other sources

This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.

Launchpad

Affected Software

25 affected componentsFixes available
Linux Linux kernel
debian/linux<=5.10.223-1, <=5.10.234-1
6.1.129-16.1.135-16.12.27-1
debian/linux-6.1
6.1.129-1~deb11u1
Linux Linux kernel>=4.9.196<4.10
Linux Linux kernel>=4.14.148<4.15
Linux Linux kernel>=4.19.78<4.20
Linux Linux kernel>=5.2.20<5.3
Linux Linux kernel>=5.3.5<5.4
Linux Linux kernel>=5.4.1<5.15.176
Linux Linux kernel>=5.16<6.1.124
Linux Linux kernel>=6.2<6.6.70
Linux Linux kernel>=6.7<6.12.9
Linux Linux kernel=5.4
Linux Linux kernel=5.4-rc2
Linux Linux kernel=5.4-rc3
Linux Linux kernel=5.4-rc4
Linux Linux kernel=5.4-rc5
Linux Linux kernel=5.4-rc6
Linux Linux kernel=5.4-rc7
Linux Linux kernel=5.4-rc8
Linux Linux kernel=6.13-rc1
Linux Linux kernel=6.13-rc2
Linux Linux kernel=6.13-rc3
Linux Linux kernel=6.13-rc4
Linux Linux kernel=6.13-rc5

Event History

Jan 15, 2025
CVE Published
via MITRE·01:05 PM
Data Sourced
via MITRE·01:05 PM
Description
Data Sourced
via NVD·01:15 PM
Description
Data Sourced
via NVD·01:15 PM
RemedySeverityWeaknessAffected Software
Mar 27, 2025
Data Sourced
via Launchpad·06:48 PM
Description
May 2, 2025
Data Sourced
via Ubuntu·06:55 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2024-57903?

CVE-2024-57903 has a severity rating that reflects its potential impact on the Linux kernel's networking functionality.

2

How do I fix CVE-2024-57903?

To fix CVE-2024-57903, ensure that you are running the latest version of the Linux kernel that contains the patch for this vulnerability.

3

What is the impact of CVE-2024-57903?

The impact of CVE-2024-57903 is primarily related to the improper handling of mutexes in the kernel, which can lead to instability in networking operations.

4

Is CVE-2024-57903 exploitable?

CVE-2024-57903 can be considered exploitable in scenarios where the affected networking features are utilized without proper safeguards.

5

When was CVE-2024-57903 disclosed?

CVE-2024-57903 was disclosed following an investigation that highlighted the issues with the handling of SO_REUSEPORT in cryptographic sockets.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203