cbcvebase.
CVE-2024-41064
published 2024-07-29

CVE-2024-41064: In the Linux kernel, the following vulnerability has been resolved: powerpc/eeh: avoid possible crash when edev->pdev changes If a PCI device is removed during…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.7th percentile
In the Linux kernel, the following vulnerability has been resolved: powerpc/eeh: avoid possible crash when edev->pdev changes If a PCI device is removed during eeh_pe_report_edev(), edev->pdev will change and can cause a crash, hold the PCI rescan/remove lock while taking a copy of edev->pdev->bus.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < 8836e1bf5838ac6c08760e0a2dd7cf6410aa7ff38836e1bf5838ac6c08760e0a2dd7cf6410aa7ff3
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < 033c51dfdbb6b79ab43fb3587276fa82d0a329e1033c51dfdbb6b79ab43fb3587276fa82d0a329e1
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < 4fad7fef847b6028475dd7b4c14fcb82b3e512744fad7fef847b6028475dd7b4c14fcb82b3e51274
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < 4bc246d2d60d071314842fa448faa4ed39082aff4bc246d2d60d071314842fa448faa4ed39082aff
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < f23c3d1ca9c4b2d626242a4e7e1ec1770447f7b5f23c3d1ca9c4b2d626242a4e7e1ec1770447f7b5
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < 428d940a8b6b3350b282c14d3f63350bde65c48b428d940a8b6b3350b282c14d3f63350bde65c48b
linuxlinux>= 9b3c76f08122f5efdbe4992a64b8478cc92dd983 < a1216e62d039bf63a539bbe718536ec789a853dda1216e62d039bf63a539bbe718536ec789a853dd
linuxlinux_kernel< 5.4.2815.4.281
linuxlinux_kernel>= 0 < 5.10.223-15.10.223-1
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.9.11-16.9.11-1
linuxlinux_kernel>= 0 < 6.9.11-16.9.11-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 0 < 4.4.0-266.3004.4.0-266.300
linuxlinux_kernel>= 0 < 4.15.0-235.2474.15.0-235.247
linuxlinux_kernel>= 5.11 < 5.15.1645.15.164
linuxlinux_kernel>= 5.16 < 6.1.1016.1.101
linuxlinux_kernel>= 5.5 < 5.10.2235.10.223
linuxlinux_kernel>= 6.2 < 6.6.426.6.42
linuxlinux_kernel>= 6.7 < 6.9.116.9.11

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.