CVE-2024-47673

CVE Details

Release Date:2024-10-09

Description


In the Linux kernel, the following vulnerability has been resolved:\nwifi: iwlwifi: mvm: pause TCM when the firmware is stopped\nNot doing so will make us send a host command to the transport while the\nfirmware is not alive, which will trigger a WARNING.\nbad state = 0\nWARNING: CPU: 2 PID: 17434 at drivers/net/wireless/intel/iwlwifi/iwl-trans.c:115 iwl_trans_send_cmd+0x1cb/0x1e0 [iwlwifi]\nRIP: 0010:iwl_trans_send_cmd+0x1cb/0x1e0 [iwlwifi]\nCall Trace:\n\niwl_mvm_send_cmd+0x40/0xc0 [iwlmvm]\niwl_mvm_config_scan+0x198/0x260 [iwlmvm]\niwl_mvm_recalc_tcm+0x730/0x11d0 [iwlmvm]\niwl_mvm_tcm_work+0x1d/0x30 [iwlmvm]\nprocess_one_work+0x29e/0x640\nworker_thread+0x2df/0x690\n? rescuer_thread+0x540/0x540\nkthread+0x192/0x1e0\n? set_kthread_struct+0x90/0x90\nret_from_fork+0x22/0x30

See more information about CVE-2024-47673 from MITRE CVE dictionary and NIST NVD


NOTE: The following CVSS metrics and score provided are preliminary and subject to review.


CVSS v3 metrics

Base Score: 5.5
Vector String: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Version: 3.1
Attack Vector: Local
Attack Complexity: Low
Privileges Required: Low
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: High

Errata information


PlatformErrataRelease Date
Oracle Linux version 8 (kernel-uek)ELSA-2024-128872024-12-18
Oracle Linux version 9 (kernel-uek)ELSA-2024-128872024-12-18


This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections:

software.hardware.complete