CVE-2024-47673

MEDIUM

Linux Kernel - Denial of Service via iwlwifi TCM Host Command

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: pause TCM when the firmware is stopped Not doing so will make us send a host command to the transport while the firmware is not alive, which will trigger a WARNING. bad state = 0 WARNING: CPU: 2 PID: 17434 at drivers/net/wireless/intel/iwlwifi/iwl-trans.c:115 iwl_trans_send_cmd+0x1cb/0x1e0 [iwlwifi] RIP: 0010:iwl_trans_send_cmd+0x1cb/0x1e0 [iwlwifi] Call Trace: <TASK> iwl_mvm_send_cmd+0x40/0xc0 [iwlmvm] iwl_mvm_config_scan+0x198/0x260 [iwlmvm] iwl_mvm_recalc_tcm+0x730/0x11d0 [iwlmvm] iwl_mvm_tcm_work+0x1d/0x30 [iwlmvm] process_one_work+0x29e/0x640 worker_thread+0x2df/0x690 ? rescuer_thread+0x540/0x540 kthread+0x192/0x1e0 ? set_kthread_struct+0x90/0x90 ret_from_fork+0x22/0x30

Scores

CVSS v3 5.5
EPSS 0.0021
EPSS Percentile 11.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (18)
linux/Kernel 4.18.0 - 5.15.168linux
linux/Kernel 5.16.0 - 6.1.112linux
linux/Kernel 6.2.0 - 6.6.53linux
linux/Kernel 6.7.0 - 6.10.12linux
Linux/Linux < 4.18
Linux/Linux 4.18
Linux/Linux 5.15.168 - 5.15.*
Linux/Linux 6.1.112 - 6.1.*
Linux/Linux 6.10.12 - 6.10.*
Linux/Linux 6.11
... and 8 more
Published Oct 09, 2024
Tracked Since Feb 18, 2026