Release Date: | 2024-11-05 |
In the Linux kernel, the following vulnerability has been resolved:\nthermal: intel: int340x: processor: Fix warning during module unload\nThe processor_thermal driver uses pcim_device_enable() to enable a PCI\ndevice, which means the device will be automatically disabled on driver\ndetach. Thus there is no need to call pci_disable_device() again on it.\nWith recent PCI device resource management improvements, e.g. commit\nf748a07a0b64 ('PCI: Remove legacy pcim_release()'), this problem is\nexposed and triggers the warining below.\n[ 224.010735] proc_thermal_pci 0000:00:04.0: disabling already-disabled device\n[ 224.010747] WARNING: CPU: 8 PID: 4442 at drivers/pci/pci.c:2250 pci_disable_device+0xe5/0x100\n...\n[ 224.010844] Call Trace:\n[ 224.010845]
See more information about CVE-2024-50093 from MITRE CVE dictionary and NIST NVD
NOTE: The following CVSS metrics and score provided are preliminary and subject to review.
Base Score: | 5.5 |
Vector String: | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Version: | 3.1 |
Attack Vector: | Local |
Attack Complexity: | Low |
Privileges Required: | Low |
User Interaction: | None |
Scope: | Unchanged |
Confidentiality: | None |
Integrity: | None |
Availability: | High |
Platform | Errata | Release Date |
Oracle Linux version 8 (kernel-uek) | ELSA-2024-12887 | 2024-12-18 |
Oracle Linux version 9 (kernel-uek) | ELSA-2024-12887 | 2024-12-18 |
This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections: