First published: Fri Sep 27 2024(Updated: )
In the Linux kernel, the following vulnerability has been resolved: MIPS: cevt-r4k: Don't call get_c0_compare_int if timer irq is installed This avoids warning: [ 0.118053] BUG: sleeping function called from invalid context at kernel/locking/mutex.c:283 Caused by get_c0_compare_int on secondary CPU. We also skipped saving IRQ number to struct clock_event_device *cd as it's never used by clockevent core, as per comments it's only meant for "non CPU local devices".
Credit: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <5.10.226 | |
Linux Kernel | >=5.11<5.15.167 | |
Linux Kernel | >=5.16<6.1.110 | |
Linux Kernel | >=6.2<6.6.51 | |
Linux Kernel | >=6.7<6.10.10 | |
Linux Kernel | =6.11-rc1 | |
Linux Kernel | =6.11-rc2 | |
Linux Kernel | =6.11-rc3 | |
Linux Kernel | =6.11-rc4 | |
debian/linux | <=5.10.223-1<=5.10.234-1 | 6.1.129-1 6.1.133-1 6.12.22-1 |
debian/linux-6.1 | 6.1.129-1~deb11u1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-46832 has been classified with medium severity due to its potential impact on system stability.
To fix CVE-2024-46832, update your Linux kernel to version 6.1.123-1 or later.
CVE-2024-46832 affects Linux kernel versions from 5.10 to 6.11-rc4.
Yes, CVE-2024-46832 has been resolved in subsequent updates to the Linux kernel.
Systems running vulnerable versions of the Linux kernel on MIPS architecture are at risk of CVE-2024-46832.