In the Linux kernel, the following vulnerability has been resolved:
RDMA/hns: Fix Use-After-Free of rsv_qp on HIP08
Currently rsv_qp is freed before ib_unregister_device() is called
on HIP08. During the time interval, users can still dereg MR and
rsv_qp will be used in this process, leading to a UAF. Move the
release of rsv_qp after calling ib_unregister_device() to fix it.
References
Configurations
Configuration 1 (hide)
|
History
03 Nov 2025, 23:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
23 Oct 2024, 17:29
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.kernel.org/stable/c/2ccf1c75d39949d8ea043d04a2e92d7100ea723d - Patch | |
| References | () https://git.kernel.org/stable/c/60595923371c2ebe7faf82536c47eb0c967e3425 - Patch | |
| References | () https://git.kernel.org/stable/c/d2d9c5127122745da6e887f451dd248cfeffca33 - Patch | |
| References | () https://git.kernel.org/stable/c/dac2723d8bfa9cf5333f477741e6e5fa1ed34645 - Patch | |
| References | () https://git.kernel.org/stable/c/fd8489294dd2beefb70f12ec4f6132aeec61a4d0 - Patch | |
| Summary |
|
|
| CWE | CWE-416 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
| First Time |
Linux linux Kernel
Linux |
|
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
21 Oct 2024, 13:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-10-21 13:15
Updated : 2025-11-03 23:16
NVD link : CVE-2024-47750
Mitre link : CVE-2024-47750
CVE.ORG link : CVE-2024-47750
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-416
Use After Free
