CVE-2024-53070

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-53070
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-53070.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-53070
Downstream
Published
2024-11-19T17:22:37Z
Modified
2025-10-17T18:02:35.740855Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
usb: dwc3: fix fault at system suspend if device was already runtime suspended
Details

In the Linux kernel, the following vulnerability has been resolved:

usb: dwc3: fix fault at system suspend if device was already runtime suspended

If the device was already runtime suspended then during system suspend we cannot access the device registers else it will crash.

Also we cannot access any registers after dwc3coreexit() on some platforms so move the dwc3enablesusphy() call to the top.

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
073530898ebf44a9418434e899cfa9ca86945333
Fixed
d9e65d461a9de037e7c9d584776d025cfce6d86d
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
85ca88f93162acb94dbcb26d0ee2b145864d14a1
Fixed
562804b1561cc248cc37746a1c96c83cab1d7209
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4fad7370086797afe6471493e3a5f36add8c48a7
Fixed
4abc5ee334fe4aba50461c45fdaaa4c5e5c57789
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
a690a9e38e6ba819789074388de7cff06425ef5b
Fixed
06b98197b69e2f2af9cb1991ee0b1c876edf7b86
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
705e3ce37bccdf2ed6f848356ff355f480d51a91
Fixed
9cfb31e4c89d200d8ab7cb1e0bb9e6e8d621ca0b

Affected versions

v5.*

v5.15.170
v5.15.171

v6.*

v6.1.115
v6.1.116
v6.11.5
v6.11.6
v6.11.7
v6.12-rc4
v6.12-rc5
v6.12-rc6
v6.6.59
v6.6.60

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.170
Fixed
5.15.172
Type
ECOSYSTEM
Events
Introduced
6.1.115
Fixed
6.1.117
Type
ECOSYSTEM
Events
Introduced
6.6.59
Fixed
6.6.61
Type
ECOSYSTEM
Events
Introduced
6.11.5
Fixed
6.11.8