CVE-2024-53070

MEDIUM

Linux Kernel 5.15.170-5.15.171, 6.1.115-6.1.116, 6.6.59-6.6.60, 6.11.5-6.11.7 - DoS via Runtime Suspended Device Access

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: fix fault at system suspend if device was already runtime suspended If the device was already runtime suspended then during system suspend we cannot access the device registers else it will crash. Also we cannot access any registers after dwc3_core_exit() on some platforms so move the dwc3_enable_susphy() call to the top.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 15.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (14)
linux/Kernel 5.15.170 - 5.15.172linux
linux/Kernel 6.1.115 - 6.1.117linux
linux/Kernel 6.11.5 - 6.11.8linux
linux/Kernel 6.6.59 - 6.6.61linux
Linux/Linux 073530898ebf44a9418434e899cfa9ca86945333 - d9e65d461a9de037e7c9d584776d025cfce6d86d
Linux/Linux 4fad7370086797afe6471493e3a5f36add8c48a7 - 4abc5ee334fe4aba50461c45fdaaa4c5e5c57789
Linux/Linux 5.15.170 - 5.15.172
Linux/Linux 6.1.115 - 6.1.117
Linux/Linux 6.11.5 - 6.11.8
Linux/Linux 6.6.59 - 6.6.61
... and 4 more
Published Nov 19, 2024
Tracked Since Feb 18, 2026