Security Advisory

CVE-2024-47750

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-10-21 12:14:15
Last updated 2026-05-11 20:40:03
Assigner Linux
State PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix Use-After-Free of rsv_qp on HIP08 Currently rsv_qp is freed before ib_unregister_device() is called on HIP08. During the time interval, users can still dereg MR and rsv_qp will be used in this process, leading to a UAF. Move the release of rsv_qp after calling ib_unregister_device() to fix it.