CVE-2024-26722

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Apr 3, 2024
Updated: Jan 7, 2025
CWE ID 667

Summary

CVE-2024-26722 is a vulnerability affecting the Linux kernel's ASoC (Audio Subsystem On-Chip) driver for the rt5645 chipset. The issue lies in the rt5645_jack_detect_work() function where the mutex rt5645->jd_mutex is not properly released, resulting in a deadlock. This occurs when the function is called for a second time, potentially leading to system instability or denial of service. The Linux Verification Center (linuxtesting.org) discovered this flaw through their SVACE (Static and Dynamic Analysis for Linux Kernel) project.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share