VYPR
Medium severity5.5NVD Advisory· Published Jun 18, 2024· Updated Jun 17, 2026

CVE-2024-36976

CVE-2024-36976

Description

In the Linux kernel, the following vulnerability has been resolved:

Revert "media: v4l2-ctrls: show all owned controls in log_status"

This reverts commit 9801b5b28c6929139d6fceeee8d739cc67bb2739.

This patch introduced a potential deadlock scenario:

[Wed May 8 10:02:06 2024] Possible unsafe locking scenario:

[Wed May 8 10:02:06 2024] CPU0 CPU1 [Wed May 8 10:02:06 2024] ---- ---- [Wed May 8 10:02:06 2024] lock(vivid_ctrls:1620:(hdl_vid_cap)->_lock); [Wed May 8 10:02:06 2024] lock(vivid_ctrls:1608:(hdl_user_vid)->_lock); [Wed May 8 10:02:06 2024] lock(vivid_ctrls:1620:(hdl_vid_cap)->_lock); [Wed May 8 10:02:06 2024] lock(vivid_ctrls:1608:(hdl_user_vid)->_lock);

For now just revert.

Affected products

4
  • Linux/Kernelcpe-rescue3 versions
    6.9+ 2 more
    • (no CPE)range: 6.9
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=6.9,<6.9.2
    • (no CPE)
  • osv-coords
    Range: >= 6.9.0, < 6.9.2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.