cbcvebase.
CVE-2024-56723
published 2024-12-29

CVE-2024-56723: In the Linux kernel, the following vulnerability has been resolved: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for PMIC devices While design wise the idea of…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
14.2th percentile
In the Linux kernel, the following vulnerability has been resolved: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for PMIC devices While design wise the idea of converting the driver to use the hierarchy of the IRQ chips is correct, the implementation has (inherited) flaws. This was unveiled when platform_get_irq() had started WARN() on IRQ 0 that is supposed to be a Linux IRQ number (also known as vIRQ). Rework the driver to respect IRQ domain when creating each MFD device separately, as the domain is not the same for all of them.

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
debianlinux-6.1< linux 6.1.123-1 (bookworm)linux 6.1.123-1 (bookworm)
linuxlinux
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < 6ea17c03edc7ed0aabb1431eb26e2f94849af68a6ea17c03edc7ed0aabb1431eb26e2f94849af68a
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < 61d590d7076b50b6ebdea1f3b83bb041c01fc48261d590d7076b50b6ebdea1f3b83bb041c01fc482
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < bb6642d4b3136359b5b620049f76515876e6127ebb6642d4b3136359b5b620049f76515876e6127e
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < 7ba45b8bc62e64da524d45532107ae93eb33c93c7ba45b8bc62e64da524d45532107ae93eb33c93c
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < d4cc78bd6a25accb7ae2ac9fc445d1e1deda4a62d4cc78bd6a25accb7ae2ac9fc445d1e1deda4a62
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < 897713c9d24f6ec394585abfcf259a6e5cad22c8897713c9d24f6ec394585abfcf259a6e5cad22c8
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < b3d45c19bcffb9a9a821df759f60be39d88c19f4b3d45c19bcffb9a9a821df759f60be39d88c19f4
linuxlinux>= 57129044f5044dcd73c22d91491906104bd331fd < 0350d783ab888cb1cb48ced36cc28b372723f1a40350d783ab888cb1cb48ced36cc28b372723f1a4
linuxlinux_kernel>= 0 < 5.10.234-15.10.234-1
linuxlinux_kernel>= 0 < 6.1.123-16.1.123-1
linuxlinux_kernel>= 0 < 6.12.3-16.12.3-1
linuxlinux_kernel>= 0 < 6.12.3-16.12.3-1
linuxlinux_kernel>= 0 < 5.4.0-211.2315.4.0-211.231
linuxlinux_kernel>= 0 < 5.15.0-135.1465.15.0-135.146
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 4.13 < 5.4.2875.4.287
linuxlinux_kernel>= 5.11 < 5.15.1745.15.174
linuxlinux_kernel>= 5.16 < 6.1.1206.1.120
linuxlinux_kernel>= 5.5 < 5.10.2315.10.231
linuxlinux_kernel>= 6.12 < 6.12.26.12.2
linuxlinux_kernel>= 6.2 < 6.6.646.6.64

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.