{"schema_version":"1.9.0","id":"CVE-2024-26585","published":"2024-02-21T14:59:13.088Z","modified":"2026-08-12T03:51:49.352322459Z","related":["ALSA-2024:2394","ALSA-2024:4352","SUSE-SU-2024:0855-1","SUSE-SU-2024:0856-1","SUSE-SU-2024:0857-1","SUSE-SU-2024:0858-1","SUSE-SU-2024:0900-1","SUSE-SU-2024:0900-2","SUSE-SU-2024:0910-1","SUSE-SU-2024:0925-1","SUSE-SU-2024:0926-1","SUSE-SU-2024:0975-1","SUSE-SU-2024:0976-1","SUSE-SU-2024:0977-1","SUSE-SU-2024:1677-1","SUSE-SU-2024:1679-1","SUSE-SU-2024:1680-1","SUSE-SU-2024:1682-1","SUSE-SU-2024:1685-1","SUSE-SU-2024:1686-1","SUSE-SU-2024:1692-1","SUSE-SU-2024:1695-1","SUSE-SU-2024:1696-1","SUSE-SU-2024:1705-1","SUSE-SU-2024:1706-1","SUSE-SU-2024:1707-1","SUSE-SU-2024:1709-1","SUSE-SU-2024:1711-1","SUSE-SU-2024:1712-1","SUSE-SU-2024:1713-1","SUSE-SU-2024:1720-1","SUSE-SU-2024:1726-1","SUSE-SU-2024:1729-1","SUSE-SU-2024:1732-1","SUSE-SU-2024:1735-1","SUSE-SU-2024:1736-1","SUSE-SU-2024:1739-1","SUSE-SU-2024:1740-1","SUSE-SU-2024:1742-1","SUSE-SU-2024:1746-1","SUSE-SU-2024:1748-1","SUSE-SU-2024:1749-1","SUSE-SU-2024:1751-1","SUSE-SU-2024:1757-1","SUSE-SU-2024:1759-1","SUSE-SU-2024:2092-1","SUSE-SU-2024:2162-1","SUSE-SU-2024:2207-1","SUSE-SU-2024:2337-1","SUSE-SU-2024:2446-1","SUSE-SU-2024:2722-1","SUSE-SU-2024:2824-1","SUSE-SU-2024:2850-1","SUSE-SU-2024:2894-1","SUSE-SU-2024:2923-1","SUSE-SU-2024:2929-1","SUSE-SU-2024:2947-1","SUSE-SU-2024:2948-1","SUSE-SU-2024:3379-1","SUSE-SU-2024:3399-1","SUSE-SU-2024:3631-1","SUSE-SU-2024:3694-1","SUSE-SU-2024:3793-1","SUSE-SU-2024:3829-1","SUSE-SU-2024:3852-1","SUSE-SU-2024:4122-1","SUSE-SU-2024:4218-1","SUSE-SU-2024:4234-1","SUSE-SU-2025:0107-1","SUSE-SU-2025:0158-1","SUSE-SU-2025:0261-1","SUSE-SU-2025:0266-1","USN-6818-2","USN-6819-2"],"summary":"tls: fix race between tx work scheduling and socket close","details":"In the Linux kernel, the following vulnerability has been resolved:\n\ntls: fix race between tx work scheduling and socket close\n\nSimilarly to previous commit, the submitting thread (recvmsg/sendmsg)\nmay exit as soon as the async crypto handler calls complete().\nReorder scheduling the work before calling complete().\nThis seems more logical in the first place, as it's\nthe inverse order of what the submitting thread will do.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"a42055e8d2c30d4decfc13ce943d09c7b9dad221"},{"fixed":"dd32621f19243f89ce830919496a5dcc2158aa33"},{"fixed":"196f198ca6fce04ba6ce262f5a0e4d567d7d219d"},{"fixed":"6db22d6c7a6dc914b12c0469b94eb639b6a8a146"},{"fixed":"e327ed60bff4a991cd7a709c47c4f0c5b4a4fd57"},{"fixed":"e01e3934a1b2d122919f73bc6ddbe1cdafc4bbdb"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-26585.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"4.20.0"},{"fixed":"5.15.165"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.84"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.18"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.7.6"}]}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-26585.json"}}],"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/196f198ca6fce04ba6ce262f5a0e4d567d7d219d"},{"type":"WEB","url":"https://git.kernel.org/stable/c/6db22d6c7a6dc914b12c0469b94eb639b6a8a146"},{"type":"WEB","url":"https://git.kernel.org/stable/c/dd32621f19243f89ce830919496a5dcc2158aa33"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e01e3934a1b2d122919f73bc6ddbe1cdafc4bbdb"},{"type":"WEB","url":"https://git.kernel.org/stable/c/e327ed60bff4a991cd7a709c47c4f0c5b4a4fd57"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EZOU3745CWCDZ7EMKMXB2OEEIB5Q3IWM/"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/26xxx/CVE-2024-26585.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2024-26585"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/26xxx/CVE-2024-26585.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}