cbcvebase.
CVE-2024-50234
published 2024-11-09

CVE-2024-50234: In the Linux kernel, the following vulnerability has been resolved: wifi: iwlegacy: Clear stale interrupts before resuming device iwl4965 fails upon resume…

PriorityP432high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.19%
9.3th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: iwlegacy: Clear stale interrupts before resuming device iwl4965 fails upon resume from hibernation on my laptop. The reason seems to be a stale interrupt which isn't being cleared out before interrupts are enabled. We end up with a race beween the resume trying to bring things back up, and the restart work (queued form the interrupt handler) trying to bring things down. Eventually the whole thing blows up. Fix the problem by clearing out any stale interrupts before interrupts get enabled during resume. Here's a debug log of the indicent: [ 12.042589] ieee80211 phy0: il_isr ISR inta 0x00000080, enabled 0xaa00008b, fh 0x00000000 [ 12.042625] ieee80211 phy0: il4965_irq_tasklet inta 0x00000080, enabled 0x00000000, fh 0x00000000 [ 12.042651] iwl4965 0000:10:00.0: RF_KILL bit toggled to enable radio. [ 12.042653] iwl4965 0000:10:00.0: On demand firmware reload [ 12.042690] ieee80211 phy0: il4965_irq_tasklet End inta 0x00000000, enabled 0xaa00008b, fh 0x00000000, flags 0x00000282 [ 12.052207] ieee80211 phy0: il4965_mac_start enter [ 12.052212] ieee80211 phy0: il_prep_station Add STA to driver ID 31: ff:ff:ff:ff:ff:ff [ 12.052244] ieee80211 phy0: il4965_set_hw_ready hardware ready [ 12.052324] ieee80211 phy0: il_apm_init Init card's basic functions [ 12.052348] ieee80211 phy0: il_apm_init L1 Enabled; Disabling L0S [ 12.055727] ieee80211 phy0: il4965_load_bsm Begin load bsm [ 12.056140] ieee80211 phy0: il4965_verify_bsm Begin verify bsm [ 12.058642] ieee80211 phy0: il4965_verify_bsm BSM bootstrap uCode image OK [ 12.058721] ieee80211 phy0: il4965_load_bsm BSM write complete, poll 1 iterations [ 12.058734] ieee80211 phy0: __il4965_up iwl4965 is coming up [ 12.058737] ieee80211 phy0: il4965_mac_start Start UP work done. [ 12.058757] ieee80211 phy0: __il4965_down iwl4965 is going down [ 12.058761] ieee80211 phy0: il_scan_cancel_timeout Scan cancel timeout [ 12.058762] ieee80211 phy0: il_do_scan_abort

Affected

32 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.119-1 (bookworm)linux 6.1.119-1 (bookworm)
debianlinux-6.1< linux 6.1.119-1 (bookworm)linux 6.1.119-1 (bookworm)
linuxlinux
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < 271d282ecc15d7012e71ca82c89a6c0e13a063dd271d282ecc15d7012e71ca82c89a6c0e13a063dd
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < 9d89941e51259c2b0b8e9c10c6f1f74200d7444f9d89941e51259c2b0b8e9c10c6f1f74200d7444f
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < d0231f43df473e2f80372d0ca150eb3619932ef9d0231f43df473e2f80372d0ca150eb3619932ef9
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < 8ac22fe1e2b104c37e4fecd97735f64bd6349ebc8ac22fe1e2b104c37e4fecd97735f64bd6349ebc
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < 23f9cef17ee315777dbe88d5c11ff6166e4d069923f9cef17ee315777dbe88d5c11ff6166e4d0699
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < cedf0f1db8d5f3524339c2c6e35a8505b0f1ab73cedf0f1db8d5f3524339c2c6e35a8505b0f1ab73
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < 8af8294d369a871cdbcdbb4d13b87d2d6e490a1f8af8294d369a871cdbcdbb4d13b87d2d6e490a1f
linuxlinux>= e655b9f03f41c7a84fb74d6619abf844d7f2ab65 < 07c90acb071b9954e1fecb1e4f4f13d12c544b3407c90acb071b9954e1fecb1e4f4f13d12c544b34
linuxlinux_kernel< 4.19.3234.19.323
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.119-16.1.119-1
linuxlinux_kernel>= 0 < 6.11.7-16.11.7-1
linuxlinux_kernel>= 0 < 6.11.7-16.11.7-1
linuxlinux_kernel>= 0 < 5.4.0-208.2285.4.0-208.228
linuxlinux_kernel>= 0 < 5.15.0-133.1445.15.0-133.144
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 4.20 < 5.4.2855.4.285
linuxlinux_kernel>= 5.11 < 5.15.1715.15.171
linuxlinux_kernel>= 5.16 < 6.1.1166.1.116
linuxlinux_kernel>= 5.5 < 5.10.2295.10.229

CVSS provenance

nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.0HIGH
vendor_msrc7.0HIGH
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.