cbcvebase.
CVE-2024-38607
published 2024-06-19

CVE-2024-38607: In the Linux kernel, the following vulnerability has been resolved: macintosh/via-macii: Fix "BUG: sleeping function called from invalid context" The via-macii…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
13.2th percentile
In the Linux kernel, the following vulnerability has been resolved: macintosh/via-macii: Fix "BUG: sleeping function called from invalid context" The via-macii ADB driver calls request_irq() after disabling hard interrupts. But disabling interrupts isn't necessary here because the VIA shift register interrupt was masked during VIA1 initialization.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < e4ff8bcfb2841fe4e17e5901578b632adb89036de4ff8bcfb2841fe4e17e5901578b632adb89036d
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1e9c3f2caec548cfa7a65416ec4e6006e542f18e1e9c3f2caec548cfa7a65416ec4e6006e542f18e
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 280619bbdeac186fb320fab3d61122d2a085def8280619bbdeac186fb320fab3d61122d2a085def8
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 010d4cb19bb13f423e3e746b824f314a9bf3e9a9010d4cb19bb13f423e3e746b824f314a9bf3e9a9
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 787fb79efc15b3b86442ecf079b8148f173376d7787fb79efc15b3b86442ecf079b8148f173376d7
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d43a8c7ec0841e0ff91a968770aeca83f0fd4c56d43a8c7ec0841e0ff91a968770aeca83f0fd4c56
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5900a88e897e6deb1bdce09ee34167a81c2da89d5900a88e897e6deb1bdce09ee34167a81c2da89d
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 2907d409ce5946390f513976f0454888d37d10582907d409ce5946390f513976f0454888d37d1058
linuxlinux>= 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < d301a71c76ee4c384b4e03cdc320a55f5cf1df05d301a71c76ee4c384b4e03cdc320a55f5cf1df05
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 5.4.0-192.2125.4.0-192.212
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 2.6.13 < 4.19.3164.19.316
linuxlinux_kernel>= 4.20 < 5.4.2785.4.278
linuxlinux_kernel>= 5.11 < 5.15.1615.15.161
linuxlinux_kernel>= 5.16 < 6.1.936.1.93
linuxlinux_kernel>= 5.5 < 5.10.2195.10.219
linuxlinux_kernel>= 6.2 < 6.6.336.6.33

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.