CVE-2024-57807

MEDIUM EPSS 6.8%
Published Jan 11, 20251y ago · Modified Jun 17, 20261w ago
5.5 CVSS 3.1
Medium
Find Similar
Published Jan 11, 2025 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: scsi: megaraid_sas: Fix for a potential deadlock This fixes a 'possible circular locking dependency detected' warning CPU0 CPU1 ---- ---- lock(&instance->reset_mutex); lock(&shost->scan_mutex); lock(&instance->reset_mutex); lock(&shost->scan_mutex); Fix this by temporarily releasing the reset_mutex.

CVSS Details

Base Score
5.5
Exploitability
1.8
Impact
3.6
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability High

Threat Intelligence

EPSS Exploit Probability
6.8% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-667

Affected Products 7

VendorProductVersionRange
linuxlinux_kernel* <5.4.289
linuxlinux_kernel*≥5.5  –  <5.10.233
linuxlinux_kernel*≥5.11  –  <5.15.176
linuxlinux_kernel*≥5.16  –  <6.1.123
linuxlinux_kernel*≥6.2  –  <6.6.69
linuxlinux_kernel*≥6.7  –  <6.12.8
linuxlinux_kernel6.13any

References 9

  • git.kernel.org https://git.kernel.org/stable/c/3c654998a3e8167a58b6c6fede545fe400a4b554
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/466ca39dbf5d0ba71c16b15c27478a9c7d4022a8
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/50740f4dc78b41dec7c8e39772619d5ba841ddd7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/78afb9bfad00c4aa58a424111d7edbcab9452f2b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/edadc693bfcc0f1ea08b8fa041c9361fd042410d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f36d024bd15ed356a80dda3ddc46d0a62aa55815
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f50783148ec98a1d38b87422e2ceaf2380b7b606
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/3c654998a3e8167a58b6c6fede545fe400a4b554
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/466ca39dbf5d0ba71c16b15c27478a9c7d4022a8
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/50740f4dc78b41dec7c8e39772619d5ba841ddd7
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/78afb9bfad00c4aa58a424111d7edbcab9452f2b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/edadc693bfcc0f1ea08b8fa041c9361fd042410d
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f36d024bd15ed356a80dda3ddc46d0a62aa55815
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f50783148ec98a1d38b87422e2ceaf2380b7b606
    Patch