The futex_requeue function in kernel/futex.c in the Linux...
High severity
Unreviewed
Published
May 13, 2022
to the GitHub Advisory Database
•
Updated Oct 22, 2025
Description
Published by the National Vulnerability Database
Jun 7, 2014
Published to the GitHub Advisory Database
May 13, 2022
Last updated
Oct 22, 2025
The futex_requeue function in kernel/futex.c in the Linux kernel through 3.14.5 does not ensure that calls have two different futex addresses, which allows local users to gain privileges via a crafted FUTEX_REQUEUE command that facilitates unsafe waiter modification.
References