CVE-2024-58096
Vulnerability Summary
Timeline
Description
In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: add srng->lock for ath11k_hal_srng_* in monitor mode ath11k_hal_srng_* should be used with srng->lock to protect srng data. For ath11k_dp_rx_mon_dest_process() and ath11k_dp_full_mon_process_rx(), they use ath11k_hal_srng_* for many times but never call srng->lock. So when running (full) monitor mode, warning will occur: RIP: 0010:ath11k_hal_srng_dst_peek+0x18/0x30 [ath11k] Call Trace: ? ath11k_hal_srng_dst_peek+0x18/0x30 [ath11k] ath11k_dp_rx_process_mon_status+0xc45/0x1190 [ath11k] ? idr_alloc_u32+0x97/0xd0 ath11k_dp_rx_process_mon_rings+0x32a/0x550 [ath11k] ath11k_dp_service_srng+0x289/0x5a0 [ath11k] ath11k_pcic_ext_grp_napi_poll+0x30/0xd0 [ath11k] __napi_poll+0x30/0x1f0 net_rx_action+0x198/0x320 __do_softirq+0xdd/0x319 So add srng->lock for them to avoid such warnings. Inorder to fetch the srng->lock, should change srng's definition from 'void' to 'struct hal_srng'. And initialize them elsewhere to prevent one line of code from being too long. This is consistent with other ring process functions, such as ath11k_dp_process_rx(). Tested-on: WCN6855 hw2.0 PCI WLAN.HSP.1.1-03125-QCAHSPSWPL_V1_V2_SILICONZ_LITE-3.6510.30 Tested-on: QCN9074 hw1.0 PCI WLAN.HK.2.7.0.1-01744-QCAHKSWPL_SILICONZ-1
CVSS Metrics
- v4.0•MEDIUM•Score: 5.6CVSS:4.0/AV:L/AC:L/AT:P/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
- v3.1•MEDIUM•Score: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- v3.1•HIGH•Score: 8.8CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Trends
Current EPSS score: 0.25%• Percentile: 17%
Affected Systems
- chainguard•linux-aws-6.12
< 6.12.57-r2 | < 6.12.65-r0 | < 6.12.77-r1 | < 6.12.65-r1 | < 6.12.66-r0 | < 6.12.74-r0 | < 6.12.69-r0 | < 6.12.72-r1 | < 6.12.72-r0 | < 6.12.77-r0 | < 6.12.57-r1 | < 6.12.62-r2 | < 6.12.63-r0 | < 6.12.71-r0 | < 6.12.65-r2 | < 6.12.78-r0 | < 6.12.76-r0 | < 6.12.74-r1 | < 6.12.68-r1 | < 6.12.77-r2 | < 6.12.70-r0 | < 6.12.60-r4 | < 6.12.62-r0 | < 6.12.62-r1 | < 6.12.68-r0 | < 6.12.67-r0 | < 6.12.80-r0
- chainguard•linux-azure-6.12
< 6.12.65-r2 | < 6.12.60-r3 | < 6.12.57-r1 | < 6.12.74-r0 | < 6.12.68-r0 | < 6.12.65-r3 | < 6.12.62-r2 | < 6.12.62-r1 | < 6.12.77-r2 | < 6.12.69-r0 | < 6.12.74-r1 | < 6.12.80-r0 | < 6.12.67-r0 | < 6.12.60-r4 | < 6.12.65-r4 | < 6.12.78-r0 | < 6.12.70-r0 | < 6.12.77-r0 | < 6.12.77-r1 | < 6.12.72-r0 | < 6.12.62-r0 | < 6.12.63-r0 | < 6.12.76-r0 | < 6.12.65-r1 | < 6.12.71-r0 | < 6.12.66-r0 | < 6.12.57-r2
- chainguard•linux-gcp-6.12
< 6.12.65-r0 | < 6.12.77-r2 | < 6.12.76-r0 | < 6.12.68-r0 | < 6.12.67-r0 | < 6.12.57-r1 | < 6.12.60-r3 | < 6.12.68-r1 | < 6.12.63-r0 | < 6.12.65-r1 | < 6.12.80-r0 | < 6.12.74-r0 | < 6.12.77-r0 | < 6.12.77-r1 | < 6.12.62-r2 | < 6.12.78-r0 | < 6.12.65-r2 | < 6.12.74-r1 | < 6.12.60-r4 | < 6.12.66-r0 | < 6.12.72-r0 | < 6.12.70-r0 | < 6.12.57-r2 | < 6.12.62-r1 | < 6.12.62-r0 | < 6.12.71-r0 | < 6.12.69-r0
- chainguard•linux-qemu-6.12
< 6.12.77-r0 | < 6.12.72-r0 | < 6.12.78-r0 | < 6.12.68-r0 | < 6.12.74-r1 | < 6.12.71-r0 | < 6.12.65-r1 | < 6.12.67-r0 | < 6.12.76-r0 | < 6.12.77-r2 | < 6.12.66-r0 | < 6.12.77-r1 | < 6.12.69-r0 | < 6.12.65-r2 | < 6.12.80-r0 | < 6.12.74-r0 | < 6.12.70-r0
- chainguard•linux-vmware-6.12
< 6.12.67-r0 | < 6.12.69-r0 | < 6.12.68-r0 | < 6.12.65-r1 | < 6.12.68-r1 | < 6.12.78-r0 | < 6.12.80-r0 | < 6.12.71-r0 | < 6.12.74-r0 | < 6.12.65-r2 | < 6.12.66-r0 | < 6.12.77-r1 | < 6.12.77-r0 | < 6.12.74-r1 | < 6.12.72-r0 | < 6.12.70-r0 | < 6.12.77-r2 | < 6.12.76-r0
- debian•linux
all | all | < 6.12.69-1 | < 6.16.3-1
- ubuntu•linux
all | < 6.8.0-117.117
- ubuntu•linux-allwinner-5.19
all
- ubuntu•linux-aws
all | < 6.8.0-1055.58
- ubuntu•linux-aws-5.0
all
- ubuntu•linux-aws-5.11
all
- ubuntu•linux-aws-5.13
all
- ubuntu•linux-aws-5.15
all
- ubuntu•linux-aws-5.19
all
- ubuntu•linux-aws-5.3
all
- ubuntu•linux-aws-5.8
all
- ubuntu•linux-aws-6.2
all
- ubuntu•linux-aws-6.5
all
- ubuntu•linux-aws-6.8
< 6.8.0-1057.60~22.04.1
- ubuntu•linux-aws-fips
all | < 6.8.0-1055.58+fips1
- ubuntu•linux-azure
all | all | < 6.8.0-1056.62
- ubuntu•linux-azure-5.11
all
- ubuntu•linux-azure-5.13
all
- ubuntu•linux-azure-5.15
all
- ubuntu•linux-azure-5.19
all
- ubuntu•linux-azure-5.3
all
- ubuntu•linux-azure-5.8
all
- ubuntu•linux-azure-6.11
all
- ubuntu•linux-azure-6.2
all
- ubuntu•linux-azure-6.5
all
- ubuntu•linux-azure-6.8
< 6.8.0-1059.65~22.04.1
- ubuntu•linux-azure-edge
all
- ubuntu•linux-azure-fde
all | all | all | all
- ubuntu•linux-azure-fde-5.19
all
- ubuntu•linux-azure-fde-6.2
all
- ubuntu•linux-azure-fde-6.8
all
- ubuntu•linux-azure-fips
all | < 6.8.0-1059.65+fips1
- ubuntu•linux-azure-nvidia
all
- ubuntu•linux-bluefield
all | < 6.8.0-1022.26
- ubuntu•linux-fips
all | < 6.8.0-116.116+fips1
- ubuntu•linux-gcp
all | all | < 6.8.0-1058.61
- ubuntu•linux-gcp-5.11
all
- ubuntu•linux-gcp-5.13
all
- ubuntu•linux-gcp-5.15
all
- ubuntu•linux-gcp-5.19
all
- ubuntu•linux-gcp-5.3
all
- ubuntu•linux-gcp-5.8
all
- ubuntu•linux-gcp-6.11
all
- ubuntu•linux-gcp-6.2
all
- ubuntu•linux-gcp-6.5
all
Showing first 50 affected entries in server-rendered view.
References (23)
- https://git.kernel.org/stable/c/b85758e76b6452740fc2a08ced6759af64c0d59a
- https://git.kernel.org/stable/c/63b7af49496d0e32f7a748b6af3361ec138b1bd3
- https://git.kernel.org/stable/c/27ca8004ba93a0665faa6d477eaeb551e03de6c8
- https://git.kernel.org/stable/c/1d2178918efc928e11bed9631469ef79ff0a862a
- https://ubuntu.com/security/CVE-2024-58096
- https://www.cve.org/CVERecord?id=CVE-2024-58096
- https://git.kernel.org/linus/63b7af49496d0e32f7a748b6af3361ec138b1bd3
- https://ubuntu.com/security/notices/USN-7594-1
- https://ubuntu.com/security/notices/USN-7594-2
- https://ubuntu.com/security/notices/USN-7594-3
- https://ubuntu.com/security/notices/USN-8278-1
- https://ubuntu.com/security/notices/USN-8289-1
- https://ubuntu.com/security/notices/USN-8296-1
- https://ubuntu.com/security/notices/USN-8296-2
- https://ubuntu.com/security/notices/USN-8289-2
- https://ubuntu.com/security/notices/USN-8278-2
- https://ubuntu.com/security/notices/USN-8393-1
- https://ubuntu.com/security/notices/USN-8440-1
- https://ubuntu.com/security/notices/USN-8499-1
- https://security-tracker.debian.org/tracker/CVE-2024-58096
- https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/58xxx/CVE-2024-58096.json
- https://nvd.nist.gov/vuln/detail/CVE-2024-58096
- https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git