You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2024 44995
About this tag
CVE-2024-44995 is a Linux kernel vulnerability in the HiSilicon HNS3 network driver, specifically a concurrency and improper locking issue that can cause a deadlock during Traffic Control (TC) configuration. Microsoft has acknowledged that Azure Linux includes the affected open-source library and is potentially impacted, but this is a product-scoped inventory statement rather than a universal guarantee. The tag covers discussions about the vulnerability's technical details, its impact on Azure Linux, and the distinction between Microsoft's attestation and broader exposure across other Microsoft products.
Microsoft’s short, one‑line attestation that “Azure Linux includes this open‑source library and is therefore potentially affected” is accurate — but it is a product‑scoped inventory statement, not a universal guarantee that no other Microsoft product contains the same vulnerable Linux kernel...