Ocingweni lwesistimu ye-futex, amathuba okusebenzisa ikhodi yomsebenzisi kumongo we-kernel atholwe futhi asuswa.

Ekusetshenzisweni kwekholi yesistimu ye- futex (indawo esheshayo ye-userspace mutex), ukusetshenziswa kwememori yesitaki ngemva kwamahhala kutholwe futhi kwaqedwa. Lokhu, futhi, kuvumele umhlaseli ukuthi asebenzise ikhodi yakhe kumongo we-kernel, nayo yonke imiphumela elandelayo ukusuka endaweni yokubuka yezokuphepha. Ukuba sengozini bekukhodi yesibambi sephutha.

Ukulungiswa Lokhu kuba sengozini kuvele kumugqa omkhulu we-Linux ngoJanuwari 28 futhi ngosuku lwangaphambi kwayizolo kungene kuma-kernel 5.10.12, 5.4.94, 4.19.172, 4.14.218.

Phakathi nengxoxo yalokhu kulungiswa, kuphakanyiswe ukuthi lobu bungozi bukhona kuzo zonke izindikimba kusukela ngo-2008:

https://www.openwall.com/lists/oss-security/2021/01/29/3

FWIW, this commit has: Fixes: 1b7558e457ed ("futexes: fix fault handling in futex_lock_pi") and that other commit is from 2008. So probably all currently maintained Linux distros and deployments are affected, unless something else mitigated the issue in some kernel versions.

Source: linux.org.ru