CVE-2024-27056

MEDIUM

Linux Kernel < 6.1.132, 5.4.0-6.1.132, 6.2.0-6.6.85, 6.7.0-6.7.11 - Denial of Service via WiFi Resume Queue Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: ensure offloading TID queue exists The resume code path assumes that the TX queue for the offloading TID has been configured. At resume time it then tries to sync the write pointer as it may have been updated by the firmware. In the unusual event that no packets have been send on TID 0, the queue will not have been allocated and this causes a crash. Fix this by ensuring the queue exist at suspend time.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 15.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (15)
linux/Kernel 5.4.0 - 6.1.132linux
linux/Kernel 6.2.0 - 6.6.85linux
linux/Kernel 6.7.0 - 6.7.11linux
Linux/Linux < 5.4
Linux/Linux 5.4
Linux/Linux 6.1.132 - 6.1.*
Linux/Linux 6.6.85 - 6.6.*
Linux/Linux 6.7.11 - 6.7.*
Linux/Linux 6.8
Linux/Linux ba7136f3f9e849e5776429317bf45ac3d4cfa3f7 - 35afffaddbe8d310dc61659da0b1a337b0d0addc
... and 5 more
Published May 01, 2024
Tracked Since Feb 18, 2026