CVE-2024-27432: net: ethernet: mtk_eth_soc: fix PPE hanging issue
In the Linux kernel, the following vulnerability has been resolved:
net: ethernet: mtkethsoc: fix PPE hanging issue
A patch to resolve an issue was found in MediaTek's GPL-licensed SDK: In the mtkppestop() function, the PPE scan mode is not disabled before disabling the PPE. This can potentially lead to a hang during the process of disabling the PPE.
Without this patch, the PPE may experience a hang during the reboot test.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-27432?
CVE-2024-27432 is classified as a moderate severity vulnerability affecting the Linux kernel.
How do I fix CVE-2024-27432?
To fix CVE-2024-27432, users should upgrade to versions 5.10.223-1, 5.10.226-1, 6.1.123-1, 6.1.119-1, 6.12.10-1, or 6.12.11-1 of the Linux kernel.
Which Linux kernel versions are affected by CVE-2024-27432?
CVE-2024-27432 affects specific versions of the Linux kernel prior to the patched releases mentioned in the fix.
What components are involved in CVE-2024-27432?
CVE-2024-27432 involves the MediaTek Ethernet driver, specifically the mtk_ppe_stop() function.
Is CVE-2024-27432 an ongoing threat?
No, CVE-2024-27432 has been resolved in the latest kernel patches, mitigating the associated risks.