CVE-2024-36887

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/05/2024
Last modified:
18/09/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> e1000e: change usleep_range to udelay in PHY mdic access<br /> <br /> This is a partial revert of commit 6dbdd4de0362 ("e1000e: Workaround<br /> for sporadic MDI error on Meteor Lake systems"). The referenced commit<br /> used usleep_range inside the PHY access routines, which are sometimes<br /> called from an atomic context. This can lead to a kernel panic in some<br /> scenarios, such as cable disconnection and reconnection on vPro systems.<br /> <br /> Solve this by changing the usleep_range calls back to udelay.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.6.26 (including) 6.6.31 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.8.5 (including) 6.8.10 (excluding)
cpe:2.3:o:linux:linux_kernel:6.9:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.9:rc6:*:*:*:*:*:*