CVE Database
/

CVE-2024-42249

Back to search

CVE-2024-42249

Published: Aug 7, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: spi: don't unoptimize message in spi_async() Calling spi_maybe_unoptimize_message() in spi_async() is wrong because the message is likely to be in the queue and not transferred yet. This can corrupt the message while it is being used by the controller driver. spi_maybe_unoptimize_message() is already called in the correct place in spi_finalize_current_message() to balance the call to spi_maybe_optimize_message() in spi_async().

VendorProductVersions

Linux

Linux

affected
7b1d87af14d9ae902ed0c5dc5fabf4eea5abdf02 - < 8b9af6d67517ce4a0015928b3cf35bfd2b1bc1c2
affected
7b1d87af14d9ae902ed0c5dc5fabf4eea5abdf02 - < c86a918b1bdba78fb155184f8d88dfba1e63335d

Linux

Linux

affected
6.9
unaffected
0 - < 6.9
unaffected
6.9.10 - <= 6.9.*
unaffected
6.10 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now