In the Linux kernel, the following vulnerability has been resolved: cgroup: Add missing cpus_read_lock() to cgroup_attach_task_all() syzbot is hitting percpu_rwsem_assert_held(&cpu_hotplug_lock) warning at cpuset_attach() [1], for commit 4f7e7236435ca0ab ("cgroup: Fix threadgroup_rwsem <-> cpus_read_lock() deadlock") missed that cpuset_attach() is also called from cgroup_attach_task_all(). Add cpus_read_lock() like what cgroup_procs_write_start() does.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published: 2024-05-03T14:50:23.558Z

Updated: 2024-08-03T15:17:55.720Z

Reserved: 2024-02-25T13:44:28.321Z

Link: CVE-2022-48671

cve-icon Vulnrichment

Updated: 2024-05-23T19:01:24.089Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-03T15:15:07.433

Modified: 2024-05-23T20:26:32.357

Link: CVE-2022-48671

cve-icon Redhat

Severity : Moderate

Publid Date: 2024-05-03T00:00:00Z

Links: CVE-2022-48671 - Bugzilla