PT-2024-3778 · Linux+1 · Linux Kernel+1

Johan Hovold

·

Published

2024-01-31

·

Updated

2026-05-26

·

CVE-2024-26605

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions 6.7.0
Description A potential deadlock can occur when enabling ASPM during the probe of Qualcomm PCIe controllers, as reported by lockdep. This issue is caused by a possible recursive locking scenario where a task tries to acquire a lock that it already holds, leading to a deadlock. The deadlock can be easily reproduced on machines like the Lenovo ThinkPad X13s by adding a delay to increase the race window during asynchronous probe, allowing another thread to take a write lock.
Recommendations For Linux kernel version 6.7.0, update to a newer version that includes the fix for the deadlock issue, which introduces a new pci set power state locked() function and associated helper functions to avoid taking the read lock twice.

Exploit

Fix

DoS

Improper Locking

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
BDU:2024-04130
CVE-2024-26605
DSA-5680-1
INFSA-2024_9315
OPENSUSE-SU-2024:13767-1
OPENSUSE-SU-2025:14705-1
RHSA-2024:9315
RHSA-2024_9315

Affected Products

Linux Kernel
Red Hat