CVE-2024-53093

Advisory lineage Upstream: 0 Downstream: 35
Modified
Published: 21 Nov 2024, 18:17
Last modified:11 May 2026, 20:50

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (cve.org)
EPSS Score
0.01% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

21 Nov 2024, 18:17
Published
Vulnerability first disclosed
11 May 2026, 20:50
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: defer partition scanning We need to suppress the partition scan from occuring within the controller's scan_work context. If a path error occurs here, the IO will wait until a path becomes available or all paths are torn down, but that action also occurs within scan_work, so it would deadlock. Defer the partion scan to a different context that does not block scan_work.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.01% Percentile: 3%

Affected Systems

  • linuxlinux

    ≥ 32acab3181c7053c775ca128c3a5c6ce50197d7f, < 60de2e03f984cfbcdc12fa552f95087c35a05a98 | ≥ 32acab3181c7053c775ca128c3a5c6ce50197d7f, < 4a57f42e5ed42cb8f1beb262c4f6d3e698939e4e | ≥ 32acab3181c7053c775ca128c3a5c6ce50197d7f, < a91b7eddf45afeeb9c5ece11dddff5de0921b00f | ≥ 32acab3181c7053c775ca128c3a5c6ce50197d7f, < 1f021341eef41e77a633186e9be5223de2ce5d48 | 4.15

  • linuxlinux_kernel

    < 6.1.118 | ≥ 6.2, < 6.6.62 | ≥ 6.7, < 6.11.9 | 6.12:rc1 | 6.12:rc2 | 6.12:rc3

References (5)