Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: powerpc/eeh: avoid possible crash when edev->pdev changes If a PCI device is removed during eeh_pe_report_edev(), edev->pdev will change and can cause a crash, hold the PCI rescan/remove lock while taking a copy of edev->pdev->bus.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | < 5.4.281 |
References
- https://git.kernel.org/stable/c/033c51dfdbb6b79ab43fb3587276fa82d0a329e1Patch
- https://git.kernel.org/stable/c/428d940a8b6b3350b282c14d3f63350bde65c48bPatch
- https://git.kernel.org/stable/c/4bc246d2d60d071314842fa448faa4ed39082affPatch
- https://git.kernel.org/stable/c/4fad7fef847b6028475dd7b4c14fcb82b3e51274Patch
- https://git.kernel.org/stable/c/8836e1bf5838ac6c08760e0a2dd7cf6410aa7ff3Patch
- https://git.kernel.org/stable/c/a1216e62d039bf63a539bbe718536ec789a853ddPatch
- https://git.kernel.org/stable/c/f23c3d1ca9c4b2d626242a4e7e1ec1770447f7b5Patch
- https://git.kernel.org/stable/c/033c51dfdbb6b79ab43fb3587276fa82d0a329e1Patch
- https://git.kernel.org/stable/c/428d940a8b6b3350b282c14d3f63350bde65c48bPatch
- https://git.kernel.org/stable/c/4bc246d2d60d071314842fa448faa4ed39082affPatch
- https://git.kernel.org/stable/c/4fad7fef847b6028475dd7b4c14fcb82b3e51274Patch
- https://git.kernel.org/stable/c/8836e1bf5838ac6c08760e0a2dd7cf6410aa7ff3Patch
- https://git.kernel.org/stable/c/a1216e62d039bf63a539bbe718536ec789a853ddPatch
- https://git.kernel.org/stable/c/f23c3d1ca9c4b2d626242a4e7e1ec1770447f7b5Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
FAQ
What is CVE-2024-41064?
CVE-2024-41064 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: powerpc/eeh: avoid possible crash when edev->pdev changes If a PCI device is removed during eeh_pe_report_edev(), edev->pdev will ...
How severe is CVE-2024-41064?
CVE-2024-41064 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-41064?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.