
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2024-56564 addresses a reference leak vulnerability in the Linux kernel's Ceph filesystem implementation. The issue was discovered in the cephmdsauthmatch() function, where a redundant getcurrent_cred() call resulted in an unnecessary credential reference being taken (Kernel Git).
The vulnerability stems from a redundant credential pointer acquisition in the cephmdsauthmatch() function. The function was making an unnecessary getcurrentcred() call despite cephmdscheckaccess() already having obtained the required credential pointer. This implementation resulted in taking an additional, unneeded credential reference (Kernel Git).
The vulnerability causes a reference leak in the Linux kernel's Ceph filesystem implementation, which could potentially lead to resource management issues over time (NVD).
The vulnerability has been patched by modifying the cephmdsauthmatch() function to accept the credential pointer as a parameter instead of calling getcurrent_cred(). This fix eliminates the redundant credential reference acquisition and resolves the reference leak (Kernel Git).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."