cbcvebase.
CVE-2024-58086
published 2025-03-06

CVE-2024-58086: In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Stop active perfmon if it is being destroyed If the active performance monitor…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
8.4th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Stop active perfmon if it is being destroyed If the active performance monitor (`v3d->active_perfmon`) is being destroyed, stop it first. Currently, the active perfmon is not stopped during destruction, leaving the `v3d->active_perfmon` pointer stale. This can lead to undefined behavior and instability. This patch ensures that the active perfmon is stopped before being destroyed, aligning with the behavior introduced in commit 7d1fd3638ee3 ("drm/v3d: Stop the active perfmon before being destroyed").

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
linuxlinux
linuxlinux>= 26a4dc29b74a137f45665089f6d3d633fcc9b662 < 22e19c8c5f6b709f4ae40227392a30d57bac187d22e19c8c5f6b709f4ae40227392a30d57bac187d
linuxlinux>= 26a4dc29b74a137f45665089f6d3d633fcc9b662 < 95036d4c01167568166108d42c2b0e9f8dbd7d2b95036d4c01167568166108d42c2b0e9f8dbd7d2b
linuxlinux>= 26a4dc29b74a137f45665089f6d3d633fcc9b662 < eb0e0eca0eab93f310c6c37b8564049366704691eb0e0eca0eab93f310c6c37b8564049366704691
linuxlinux>= 26a4dc29b74a137f45665089f6d3d633fcc9b662 < 1c5673a2c8926adbb61f340c779b28e18188a8cd1c5673a2c8926adbb61f340c779b28e18188a8cd
linuxlinux>= 26a4dc29b74a137f45665089f6d3d633fcc9b662 < f8805b12f477bd964e2820a87921c7b58cc2dee3f8805b12f477bd964e2820a87921c7b58cc2dee3
linuxlinux>= 26a4dc29b74a137f45665089f6d3d633fcc9b662 < 21f1435b1e6b012a07c42f36b206d2b66fc8f13b21f1435b1e6b012a07c42f36b206d2b66fc8f13b
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 6.12.16-16.12.16-1
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-78.786.8.0-78.78
linuxlinux_kernel>= 5.15 < 5.15.1795.15.179
linuxlinux_kernel>= 5.16 < 6.1.1296.1.129
linuxlinux_kernel>= 6.13 < 6.13.46.13.4
linuxlinux_kernel>= 6.2 < 6.6.796.6.79
linuxlinux_kernel>= 6.7 < 6.12.166.12.16

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.