PT-2024-35534 · Linux+3 · Linux Kernel+3

William Mcvicker

·

Published

2024-11-04

·

Updated

2026-03-24

·

CVE-2024-53070

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.11.8
Description A fault in the Linux kernel has been resolved, specifically in the dwc3 component, which occurs when the system is suspended and the device was already runtime suspended. This issue prevents access to device registers during system suspend, causing a crash. Additionally, on some platforms, registers cannot be accessed after the dwc3 core exit() function is called, so the dwc3 enable susphy() call has been moved to the top.
Recommendations For Linux kernel versions prior to 6.11.8, upgrade to version 6.11.8 or later to resolve the issue. As a temporary workaround, consider restricting access to the dwc3 core exit() function until a patch is available.

Exploit

Fix

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-16040
ALT-PU-2024-17891
BDU:2025-03345
CVE-2024-53070
DLA-4008-1
DSA-5818-1
INFSA-2025_6966
OESA-2024-2590
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2026:0447-1
SUSE-SU-2026:0471-1
SUSE-SU-2026:0472-1
SUSE-SU-2026:0587-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Affected Products

Alt Linux
Linux Kernel
Red Hat
Red Os