{"id":"DEBIAN-CVE-2024-26838","details":"In the Linux kernel, the following vulnerability has been resolved:  RDMA/irdma: Fix KASAN issue with tasklet  KASAN testing revealed the following issue assocated with freeing an IRQ.  [50006.466686] Call Trace: [50006.466691]  \u003cIRQ\u003e [50006.489538]  dump_stack+0x5c/0x80 [50006.493475]  print_address_description.constprop.6+0x1a/0x150 [50006.499872]  ? irdma_sc_process_ceq+0x483/0x790 [irdma] [50006.505742]  ? irdma_sc_process_ceq+0x483/0x790 [irdma] [50006.511644]  kasan_report.cold.11+0x7f/0x118 [50006.516572]  ? irdma_sc_process_ceq+0x483/0x790 [irdma] [50006.522473]  irdma_sc_process_ceq+0x483/0x790 [irdma] [50006.528232]  irdma_process_ceq+0xb2/0x400 [irdma] [50006.533601]  ? irdma_hw_flush_wqes_callback+0x370/0x370 [irdma] [50006.540298]  irdma_ceq_dpc+0x44/0x100 [irdma] [50006.545306]  tasklet_action_common.isra.14+0x148/0x2c0 [50006.551096]  __do_softirq+0x1d0/0xaf8 [50006.555396]  irq_exit_rcu+0x219/0x260 [50006.559670]  irq_exit+0xa/0x20 [50006.563320]  smp_apic_timer_interrupt+0x1bf/0x690 [50006.568645]  apic_timer_interrupt+0xf/0x20 [50006.573341]  \u003c/IRQ\u003e  The issue is that a tasklet could be pending on another core racing the delete of the irq.  Fix by insuring any scheduled tasklet is killed after deleting the irq.","modified":"2026-09-15T09:03:05.685985691Z","published":"2024-04-17T10:15:09.810Z","upstream":["CVE-2024-26838"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2024-26838"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.82-1"}]}],"versions":["6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1","6.1.52-1","6.1.55-1","6.1.55-1~bpo11+1","6.1.64-1","6.1.66-1","6.1.67-1","6.1.69-1","6.1.69-1~bpo11+1","6.1.76-1","6.1.76-1~bpo11+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-26838.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.7.7-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-26838.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.7.7-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-26838.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}