cbcvebase.
CVE-2024-40967
published 2024-07-12

CVE-2024-40967: In the Linux kernel, the following vulnerability has been resolved: serial: imx: Introduce timeout when waiting on transmitter empty By waiting at most 1…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.7th percentile
In the Linux kernel, the following vulnerability has been resolved: serial: imx: Introduce timeout when waiting on transmitter empty By waiting at most 1 second for USR2_TXDC to be set, we avoid a potential deadlock. In case of the timeout, there is not much we can do, so we simply ignore the transmitter state and optimistically try to continue.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.99-1 (bookworm)linux 6.1.99-1 (bookworm)
debianlinux-6.1< linux 6.1.99-1 (bookworm)linux 6.1.99-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 3.2.30 < 3.33.3
linuxlinux>= 3.4.12 < 3.53.5
linuxlinux>= 3.5.5 < 3.63.6
linuxlinux>= 9ec1882df244c4ee1baa692676fef5e8b0f5487d < 7f2b9ab6d0b26f16cd38dd9fd91d51899635f7c77f2b9ab6d0b26f16cd38dd9fd91d51899635f7c7
linuxlinux>= 9ec1882df244c4ee1baa692676fef5e8b0f5487d < 7f9e70c68b7ace0141fe3bc94bf7b61296b719167f9e70c68b7ace0141fe3bc94bf7b61296b71916
linuxlinux>= 9ec1882df244c4ee1baa692676fef5e8b0f5487d < 982ae3376c4c91590d38dc8a676c10f7df048a44982ae3376c4c91590d38dc8a676c10f7df048a44
linuxlinux>= 9ec1882df244c4ee1baa692676fef5e8b0f5487d < 53b2c95547427c358f45515a9f144efee95e370153b2c95547427c358f45515a9f144efee95e3701
linuxlinux>= 9ec1882df244c4ee1baa692676fef5e8b0f5487d < e533e4c62e9993e62e947ae9bbec34e4c7ae81c2e533e4c62e9993e62e947ae9bbec34e4c7ae81c2
linuxlinux_kernel< 5.15.1625.15.162
linuxlinux_kernel>= 0 < 6.1.99-16.1.99-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.4.0-205.2255.4.0-205.225
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 5.16 < 6.1.966.1.96
linuxlinux_kernel>= 6.2 < 6.6.366.6.36
linuxlinux_kernel>= 6.7 < 6.9.76.9.7

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.7MEDIUM
vendor_ubuntu6.7MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.