CVE-2024-27000
In the Linux kernel, the following vulnerability has been resolved: serial: mxs-auart: add spinlock around changing cts state The uart_handle_cts_change() function in serial_core expects the caller to hold uport->lock.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.33%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In the Linux kernel, the following vulnerability has been resolved: serial: mxs-auart: add spinlock around changing cts state The uart_handle_cts_change() function in serial_core expects the caller to hold uport->lock. For example, I have seen the below kernel splat, when the Bluetooth driver is loaded on an i.MX28 board. [ 85.119255] ------------[ cut here ]------------ [ 85.124413] WARNING: CPU: 0 PID: 27 at /drivers/tty/serial/serial_core.c:3453 uart_handle_cts_change+0xb4/0xec [ 85.134694] Modules linked in: hci_uart bluetooth ecdh_generic ecc wlcore_sdio configfs [ 85.143314] CPU: 0 PID: 27 Comm: kworker/u3:0 Not tainted 6.6.3-00021-gd62a2f068f92 #1 [ 85.151396] Hardware name: Freescale MXS (Device Tree) [ 85.156679] Workqueue: hci0 hci_power_on [bluetooth] (...) [ 85.191765] uart_handle_cts_change from mxs_auart_irq_handle+0x380/0x3f4 [ 85.198787] mxs_auart_irq_handle from __handle_irq_event_percpu+0x88/0x210 (...)
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.33% probability · 26th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel · debian/debian linux · fedoraproject/fedora
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/0dc0637e6b16158af85945425821bfd0151adb37Patch
- https://git.kernel.org/stable/c/21535ef0ac1945080198fe3e4347ea498205c99aPatch
- https://git.kernel.org/stable/c/2c9b943e9924cf1269e44289bc5e60e51b0f5270Patch
- https://git.kernel.org/stable/c/479244d68f5d94f3903eced52b093c1e01ddb495Patch
- https://git.kernel.org/stable/c/54c4ec5f8c471b7c1137a1f769648549c423c026Patch
- https://git.kernel.org/stable/c/56434e295bd446142025913bfdf1587f5e1970adPatch
- https://git.kernel.org/stable/c/5f40fd6ca2cf0bfbc5a5c9e403dfce8ca899ba37Patch
- https://git.kernel.org/stable/c/94b0e65c75f4af888ab2dd6c90f060f762924e86Patch
- https://git.kernel.org/stable/c/0dc0637e6b16158af85945425821bfd0151adb37Patch
- https://git.kernel.org/stable/c/21535ef0ac1945080198fe3e4347ea498205c99aPatch
- https://git.kernel.org/stable/c/2c9b943e9924cf1269e44289bc5e60e51b0f5270Patch
- https://git.kernel.org/stable/c/479244d68f5d94f3903eced52b093c1e01ddb495Patch
- https://git.kernel.org/stable/c/54c4ec5f8c471b7c1137a1f769648549c423c026Patch
- https://git.kernel.org/stable/c/56434e295bd446142025913bfdf1587f5e1970adPatch
- https://git.kernel.org/stable/c/5f40fd6ca2cf0bfbc5a5c9e403dfce8ca899ba37Patch
- https://git.kernel.org/stable/c/94b0e65c75f4af888ab2dd6c90f060f762924e86Patch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00017.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4EZ6PJW7VOZ224TD7N4JZNU6KV32ZJ53/Mailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DAMSOZXJEPUOXW33WZYWCVAY7Z5S7OOY/Mailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GCBZZEC7L7KTWWAS2NLJK6SO3IZIL4WW/Mailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.