cbcvebase.
CVE-2024-50176
published 2024-11-08

CVE-2024-50176: In the Linux kernel, the following vulnerability has been resolved: remoteproc: k3-r5: Fix error handling when power-up failed By simply bailing out, the…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.7th percentile
In the Linux kernel, the following vulnerability has been resolved: remoteproc: k3-r5: Fix error handling when power-up failed By simply bailing out, the driver was violating its rule and internal assumptions that either both or no rproc should be initialized. E.g., this could cause the first core to be available but not the second one, leading to crashes on its shutdown later on while trying to dereference that second instance.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.115-1 (bookworm)linux 6.1.115-1 (bookworm)
debianlinux-6.1< linux 6.1.115-1 (bookworm)linux 6.1.115-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 2494bc856e7ce50b1c4fd8afb4d17f2693f36565 < fc71c23958931713b5e76f317b76be37189f2516fc71c23958931713b5e76f317b76be37189f2516
linuxlinux>= 2a1ec20b174c0f613224c59e694639ac07308b53 < 87ab3af7447791d0c619610fd560bd804549e18787ab3af7447791d0c619610fd560bd804549e187
linuxlinux>= 6.1.95 < 6.1.1136.1.113
linuxlinux>= 6.6.35 < 6.6.556.6.55
linuxlinux>= 6.9.6 < 6.106.10
linuxlinux>= 61f6f68447aba08aeaa97593af3a7d85a114891f < afd102bde99d90ef41e043c846ea34b04433eb7bafd102bde99d90ef41e043c846ea34b04433eb7b
linuxlinux>= 61f6f68447aba08aeaa97593af3a7d85a114891f < 7afb5e3aa989c479979faeb18768a67889a7a9c67afb5e3aa989c479979faeb18768a67889a7a9c6
linuxlinux>= 61f6f68447aba08aeaa97593af3a7d85a114891f < 9ab27eb5866ccbf57715cfdba4b03d57776092fb9ab27eb5866ccbf57715cfdba4b03d57776092fb
linuxlinux_kernel>= 0 < 6.1.115-16.1.115-1
linuxlinux_kernel>= 0 < 6.11.4-16.11.4-1
linuxlinux_kernel>= 0 < 6.11.4-16.11.4-1
linuxlinux_kernel>= 0 < 6.8.0-54.566.8.0-54.56
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 6.1.95 < 6.1.1136.1.113
linuxlinux_kernel>= 6.10 < 6.10.146.10.14
linuxlinux_kernel>= 6.11 < 6.11.36.11.3
linuxlinux_kernel>= 6.6.35 < 6.6.556.6.55
linuxlinux_kernel>= 6.9.6 < 6.106.10

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.