PT-2024-34081 · Linux+6 · Linux Kernel+6

Published

2024-10-28

·

Updated

2025-10-03

·

CVE-2024-50249

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.6.61
Description: A vulnerability in the Linux kernel has been resolved by updating the rmw lock to a raw spinlock. The issue was triggered by a BUG that caused an invalid wait context, resulting in a kernel crash. The vulnerability is related to the ACPI CPPC (Collaborative Processor Performance Control) and the locking mechanism used by the sugov update shared function. The function locks a raw spinlock while the cpc write function locks a spinlock, causing a wait-type order issue. To resolve this issue, the rmw lock is updated to a raw spinlock, ensuring that interrupts are disabled on the CPU holding it.
Recommendations: For Linux kernel versions prior to 6.6.61, update to version 6.6.61 or later to resolve the issue. As a temporary workaround, consider disabling the cpc write function until a patch is available. Restrict access to the sugov update shared function to minimize the risk of exploitation. Avoid using the rmw lock variable in the affected kernel code until the issue is resolved.

Exploit

Fix

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-16040
ALT-PU-2024-17211
ALT-PU-2024-17891
ALT-PU-2025-12647
AZL-53382
BDU:2025-07894
CVE-2024-50249
DLA-4008-1
DSA-5818-1
MGASA-2024-0368
MGASA-2024-0369
OESA-2024-2537
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2024_4314-1
OPENSUSE-SU-2024_4315-1
OPENSUSE-SU-2024_4316-1
OPENSUSE-SU-2024_4376-1
OPENSUSE-SU-2025:14705-1
SUSE-SU-2024:4314-1
SUSE-SU-2024:4315-1
SUSE-SU-2024:4316-1
SUSE-SU-2024:4318-1
SUSE-SU-2024:4364-1
SUSE-SU-2024:4376-1
SUSE-SU-2024:4387-1
SUSE-SU-2025:20163-1
SUSE-SU-2025:20164-1
SUSE-SU-2025:20246-1
SUSE-SU-2025:20247-1
USN-7276-1
USN-7277-1
USN-7288-1
USN-7288-2
USN-7289-1
USN-7289-2
USN-7289-3
USN-7289-4
USN-7291-1
USN-7305-1
USN-7308-1
USN-7331-1
USN-7388-1
USN-7389-1
USN-7390-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7458-1
USN-7523-1
USN-7524-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu