Junglewise Threat Intelligence

CVE-2024-35934: Linux Kernel resource exhaustion in SMC PNETID list creation

CVE-2024-35934 · Severity: medium · CVSS 5.5 · Published 2024-05-19

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability in the Linux kernel's networking component could allow a local user to cause significant system performance degradation or a denial-of-service condition. The issue stems from how the system handles the creation of new network namespaces, leading to excessive locking pressure that can stall networking operations. This could impact the availability of services and overall system responsiveness.

Technical details

A vulnerability in net/smc/smc_pnet.c occurs because smc_pnet_create_pnetids_list() unnecessarily acquires the Routing Netlink (rtnl) mutex during the initialization of new network namespaces, even when no network devices are present. This behavior creates extreme rtnl pressure and lock contention, as reported by syzbot. An attacker with local access could potentially exploit this by repeatedly triggering network namespace creation to exhaust system resources or stall networking tasks. The fix introduces an early return in smc_pnet_net_init() if the device list is empty, avoiding the unnecessary lock acquisition. Patches have been released for multiple stable kernel branches including 5.10, 6.1, 6.6, and 6.8.

Affected products

  • Linux Linux Kernel up to 5.10.215, 5.16 to 6.1, 6.2 to 6.6.27, 6.7 to 6.8.6

Timeline

  • 2024-03-05: patched: Initial patch committed to mainline kernel
  • 2024-05-19: advisory: CVE-2024-35934 published

References

Related threats