CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
AI Score
Confidence
High
EPSS
Percentile
5.0%
In the Linux kernel, the following vulnerability has been resolved:
riscv: kexec: Avoid deadlock in kexec crash path
If the kexec crash code is called in the interrupt context, the
machine_kexec_mask_interrupts() function will trigger a deadlock while
trying to acquire the irqdesc spinlock and then deactivate irqchip in
irq_set_irqchip_state() function.
Unlike arm64, riscv only requires irq_eoi handler to complete EOI and
keeping irq_set_irqchip_state() will only leave this possible deadlock
without any use. So we simply remove it.
git.kernel.org/stable/c/484dd545271d02d1571e1c6b62ea7df9dbe5e692
git.kernel.org/stable/c/653deee48a4682ea17a05b96fb6842795ab5943c
git.kernel.org/stable/c/7692c9b6baacdee378435f58f19baf0eb69e4155
git.kernel.org/stable/c/bb80a7911218bbab2a69b5db7d2545643ab0073d
git.kernel.org/stable/c/c562ba719df570c986caf0941fea2449150bcbc4
security-tracker.debian.org/tracker/CVE-2024-42140