cbcvebase.
CVE-2024-42124
published 2024-07-30

CVE-2024-42124: In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Make qedf_execute_tmf() non-preemptible Stop calling smp_processor_id() from…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.7th percentile
In the Linux kernel, the following vulnerability has been resolved: scsi: qedf: Make qedf_execute_tmf() non-preemptible Stop calling smp_processor_id() from preemptible code in qedf_execute_tmf90. This results in BUG_ON() when running an RT kernel. [ 659.343280] BUG: using smp_processor_id() in preemptible [00000000] code: sg_reset/3646 [ 659.343282] caller is qedf_execute_tmf+0x8b/0x360 [qedf]

Affected

23 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.98-1 (bookworm)linux 6.1.98-1 (bookworm)
debianlinux-6.1< linux 6.1.98-1 (bookworm)linux 6.1.98-1 (bookworm)
linuxlinux
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < 4f314aadeed8cdf42c8cf30769425b5e447027484f314aadeed8cdf42c8cf30769425b5e44702748
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < 5ceb40cdee721e13cbe15a0515cacf984e11236b5ceb40cdee721e13cbe15a0515cacf984e11236b
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < 0a8a91932b2772e75bf3f6d133ca4225d1d3e9200a8a91932b2772e75bf3f6d133ca4225d1d3e920
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < fa49c65a1cec6a3901ef884fdb24d98068b63493fa49c65a1cec6a3901ef884fdb24d98068b63493
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < b6ded5316ec56e973dcf5f9997945aad01a9f062b6ded5316ec56e973dcf5f9997945aad01a9f062
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < 2b9c7787cfcd1e76d873a78f16cf45bfa4b100ea2b9c7787cfcd1e76d873a78f16cf45bfa4b100ea
linuxlinux>= 61d8658b4a435eac729966cc94cdda077a8df5cd < 0d8b637c9c5eeaa1a4e3dfb336f3ff918eb64fec0d8b637c9c5eeaa1a4e3dfb336f3ff918eb64fec
linuxlinux_kernel>= 0 < 5.10.223-15.10.223-1
linuxlinux_kernel>= 0 < 6.1.98-16.1.98-1
linuxlinux_kernel>= 0 < 6.9.9-16.9.9-1
linuxlinux_kernel>= 0 < 6.9.9-16.9.9-1
linuxlinux_kernel>= 0 < 5.4.0-195.2155.4.0-195.215
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 4.11 < 5.4.2805.4.280
linuxlinux_kernel>= 5.11 < 5.15.1635.15.163
linuxlinux_kernel>= 5.16 < 6.1.986.1.98
linuxlinux_kernel>= 5.5 < 5.10.2225.10.222
linuxlinux_kernel>= 6.2 < 6.6.396.6.39
linuxlinux_kernel>= 6.7 < 6.9.96.9.9

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.