Answer in brief
CVE-2024-49966 records a Unknown severity vulnerability in ocfs2: cancel dqi_sync_work before freeing oinfo. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-49966 records a Unknown severity vulnerability in ocfs2: cancel dqi_sync_work before freeing oinfo. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <fc5cc716dfbdc5fd5f373ff3b51358174cf88bfc || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <89043e7ed63c7fc141e68ea5a79758ed24b6c699 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <14114d8148db07e7946fb06b56a50cfa425e26c7 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <4173d1277c00baeedaaca76783e98b8fd0e3c08d || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <bbf41277df8b33fbedf4750a9300c147e8f104eb || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <ef768020366f47d23f39c4f57bcb03af6d1e24b3 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <a4346c04d055bf7e184c18a73dbd23b6a9811118 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <0d707a33c84b371cb66120e198eed3374726ddd8 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <35fccce29feb3706f649726d410122dd81b92c18 | fc5cc716dfbdc5fd5f373ff3b51358174cf88bfc, 89043e7ed63c7fc141e68ea5a79758ed24b6c699, 14114d8148db07e7946fb06b56a50cfa425e26c7, 4173d1277c00baeedaaca76783e98b8fd0e3c08d, bbf41277df8b33fbedf4750a9300c147e8f104eb, ef768020366f47d23f39c4f57bcb03af6d1e24b3, a4346c04d055bf7e184c18a73dbd23b6a9811118, 0d707a33c84b371cb66120e198eed3374726ddd8, 35fccce29feb3706f649726d410122dd81b92c18 |
| Linux/Linuxgeneric | 2.6.29 | Not reported |
Published upstream
Oct 21, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: ocfs2: cancel dqi_sync_work before freeing oinfo ocfs2_global_read_info() will initialize and schedule dqi_sync_work at the end, if error occurs after successfully reading global quota, it will trigger the following warning with CONFIG_DEBUG_OBJECTS_* enabled: ODEBUG: free active (active state 0) object: 00000000d8b0ce28 object type: timer_list hint: qsync_work_fn+0x0/0x16c This reports that there is an active delayed work when freeing oinfo in error handling, so cancel dqi_sync_work first. BTW, return status instead of -1 when .read_file_info fails.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <fc5cc716dfbdc5fd5f373ff3b51358174cf88bfc || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <89043e7ed63c7fc141e68ea5a79758ed24b6c699 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <14114d8148db07e7946fb06b56a50cfa425e26c7 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <4173d1277c00baeedaaca76783e98b8fd0e3c08d || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <bbf41277df8b33fbedf4750a9300c147e8f104eb || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <ef768020366f47d23f39c4f57bcb03af6d1e24b3 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <a4346c04d055bf7e184c18a73dbd23b6a9811118 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <0d707a33c84b371cb66120e198eed3374726ddd8 || >=171bf93ce11f4c9929fdce6ce63df8da2f3c4475 <35fccce29feb3706f649726d410122dd81b92c18 | fc5cc716dfbdc5fd5f373ff3b51358174cf88bfc, 89043e7ed63c7fc141e68ea5a79758ed24b6c699, 14114d8148db07e7946fb06b56a50cfa425e26c7, 4173d1277c00baeedaaca76783e98b8fd0e3c08d, bbf41277df8b33fbedf4750a9300c147e8f104eb, ef768020366f47d23f39c4f57bcb03af6d1e24b3, a4346c04d055bf7e184c18a73dbd23b6a9811118, 0d707a33c84b371cb66120e198eed3374726ddd8, 35fccce29feb3706f649726d410122dd81b92c18 |
| Linux/Linuxgeneric | 2.6.29 | Not reported |
Published upstream
Oct 21, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: ocfs2: cancel dqi_sync_work before freeing oinfo ocfs2_global_read_info() will initialize and schedule dqi_sync_work at the end, if error occurs after successfully reading global quota, it will trigger the following warning with CONFIG_DEBUG_OBJECTS_* enabled: ODEBUG: free active (active state 0) object: 00000000d8b0ce28 object type: timer_list hint: qsync_work_fn+0x0/0x16c This reports that there is an active delayed work when freeing oinfo in error handling, so cancel dqi_sync_work first. BTW, return status instead of -1 when .read_file_info fails.
Quoted source text, attributed separately from HOL analysis.