CVE-2024-49937
Published: Oct 21, 2024
Modified: May 23, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Set correct chandef when starting CAC When starting CAC in a mode other than AP mode, it return a "WARNING: CPU: 0 PID: 63 at cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211]" caused by the chandef.chan being null at the end of CAC. Solution: Ensure the channel definition is set for the different modes when starting CAC to avoid getting a NULL 'chan' at the end of CAC. Call Trace: ? show_regs.part.0+0x14/0x16 ? __warn+0x67/0xc0 ? cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211] ? report_bug+0xa7/0x130 ? exc_overflow+0x30/0x30 ? handle_bug+0x27/0x50 ? exc_invalid_op+0x18/0x60 ? handle_exception+0xf6/0xf6 ? exc_overflow+0x30/0x30 ? cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211] ? exc_overflow+0x30/0x30 ? cfg80211_chandef_dfs_usable+0x20/0xaf [cfg80211] ? regulatory_propagate_dfs_state.cold+0x1b/0x4c [cfg80211] ? cfg80211_propagate_cac_done_wk+0x1a/0x30 [cfg80211] ? process_one_work+0x165/0x280 ? worker_thread+0x120/0x3f0 ? kthread+0xc2/0xf0 ? process_one_work+0x280/0x280 ? kthread_complete_and_exit+0x20/0x20 ? ret_from_fork+0x19/0x24 [shorten subject, remove OCB, reorder cases to match previous list]
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 7b0a0e3c3a88260b6fcb017e49f198463aa62ed1 - < 95f32191e50b75e0f75fae1bb925cdf51d8df0a3affected 7b0a0e3c3a88260b6fcb017e49f198463aa62ed1 - < 04053e55dd50741cf6c59b9bbaa4238218c05c70affected 7b0a0e3c3a88260b6fcb017e49f198463aa62ed1 - < f4dbfda159e43d49b43003cc3c2914751939035faffected 7b0a0e3c3a88260b6fcb017e49f198463aa62ed1 - < c628026563f4ea9e0413dd4b69429e4a1db240b1affected 7b0a0e3c3a88260b6fcb017e49f198463aa62ed1 - < 20361712880396e44ce80aaeec2d93d182035651+2 more versions |
Linux | Linux | affected 6.0unaffected 0 - < 6.0unaffected 6.1.113 - <= 6.1.*unaffected 6.6.55 - <= 6.6.*unaffected 6.10.14 - <= 6.10.*+2 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now