CVE-2024-50176Improper Handling of Exceptional Conditions in Linux

Severity
5.5MEDIUMNVD
OSV8.8
EPSS
0.0%
top 98.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 8
Latest updateApr 1

Description

In the Linux kernel, the following vulnerability has been resolved: remoteproc: k3-r5: Fix error handling when power-up failed By simply bailing out, the driver was violating its rule and internal assumptions that either both or no rproc should be initialized. E.g., this could cause the first core to be available but not the second one, leading to crashes on its shutdown later on while trying to dereference that second instance.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages6 packages

NVDlinux/linux_kernel6.1.956.1.113+4
Debianlinux/linux_kernel< 6.1.115-1+2
Ubuntulinux/linux_kernel< 6.8.0-54.56+1
CVEListV5linux/linux2a1ec20b174c0f613224c59e694639ac07308b5387ab3af7447791d0c619610fd560bd804549e187+6
debiandebian/linux< linux 6.1.115-1 (bookworm)

Patches

🔴Vulnerability Details

16
OSV
linux-azure-6.8 vulnerabilities2025-04-01
OSV
linux-hwe-6.8 vulnerabilities2025-04-01
OSV
linux-azure vulnerabilities2025-03-27
OSV
linux-oem-6.8 vulnerabilities2025-03-27
OSV
linux-ibm vulnerabilities2025-03-27

📋Vendor Advisories

16
Ubuntu
Linux kernel (Azure) vulnerabilities2025-04-01
Ubuntu
Linux kernel (HWE) vulnerabilities2025-04-01
Ubuntu
Linux kernel (IBM) vulnerabilities2025-03-27
Ubuntu
Linux kernel (Azure) vulnerabilities2025-03-27
Ubuntu
Linux kernel (OEM) vulnerabilities2025-03-27