We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-42090

pinctrl: fix deadlock in create_pinctrl() when handling -EPROBE_DEFER



AssignerLinux
Reserved2024-07-29
Published2024-07-29
Updated2024-09-11

Description

In the Linux kernel, the following vulnerability has been resolved: pinctrl: fix deadlock in create_pinctrl() when handling -EPROBE_DEFER In create_pinctrl(), pinctrl_maps_mutex is acquired before calling add_setting(). If add_setting() returns -EPROBE_DEFER, create_pinctrl() calls pinctrl_free(). However, pinctrl_free() attempts to acquire pinctrl_maps_mutex, which is already held by create_pinctrl(), leading to a potential deadlock. This patch resolves the issue by releasing pinctrl_maps_mutex before calling pinctrl_free(), preventing the deadlock. This bug was discovered and resolved using Coverity Static Analysis Security Testing (SAST) by Synopsys, Inc.

Product status

Default status
0x40037d0690

42fed7ba44e4 before e65a0dc2e85e
affected

42fed7ba44e4 before 420ce1261907
affected

42fed7ba44e4 before b813e3fd102a
affected

42fed7ba44e4 before 01fe2f885f78
affected

42fed7ba44e4 before b36efd2e3e22
affected

42fed7ba44e4 before 4038c57bf616
affected

42fed7ba44e4 before 48a7a7c9571c
affected

42fed7ba44e4 before adec57ff8e66
affected

Default status
0x40037d07e0

3.10
affected

Any version before 3.10
unaffected

4.19.317
unaffected

5.4.279
unaffected

5.10.221
unaffected

5.15.162
unaffected

6.1.97
unaffected

6.6.37
unaffected

6.9.8
unaffected

6.10
unaffected

References

https://git.kernel.org/stable/c/e65a0dc2e85efb28e182aca50218e8a056d0ce04

https://git.kernel.org/stable/c/420ce1261907e5dbeda1e4daffd5b6c76f8188c0

https://git.kernel.org/stable/c/b813e3fd102a959c5b208ed68afe27e0137a561b

https://git.kernel.org/stable/c/01fe2f885f7813f8aed5d3704b384a97b1116a9e

https://git.kernel.org/stable/c/b36efd2e3e22a329444b6b24fa48df6d20ae66e6

https://git.kernel.org/stable/c/4038c57bf61631219b31f1bd6e92106ec7f084dc

https://git.kernel.org/stable/c/48a7a7c9571c3e62f17012dd7f2063e926179ddd

https://git.kernel.org/stable/c/adec57ff8e66aee632f3dd1f93787c13d112b7a1

cve.org CVE-2024-42090

nvd.nist.gov CVE-2024-42090

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-42090
Subscribe to our newsletter to learn more about our work.