CVE-2024-36970

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-36970
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-36970.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-36970
Downstream
Related
Published
2024-06-08T13:01:03Z
Modified
2025-10-09T10:26:26.718341Z
Summary
wifi: iwlwifi: Use request_module_nowait
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: iwlwifi: Use requestmodulenowait

This appears to work around a deadlock regression that came in with the LED merge in 6.9.

The deadlock happens on my system with 24 iwlwifi radios, so maybe it something like all worker threads are busy and some work that needs to complete cannot complete.

[also remove unnecessary "load_module" var and now-wrong comment]

References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f5c31bcf604db54470868f3118a60dc4a9ba8813
Fixed
d20013259539e2fde2deeac85354851097afdf9e
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f5c31bcf604db54470868f3118a60dc4a9ba8813
Fixed
3d913719df14c28c4d3819e7e6d150760222bda4

Affected versions

v6.*

v6.9
v6.9-rc1
v6.9-rc2
v6.9-rc3
v6.9-rc4
v6.9-rc5
v6.9-rc6
v6.9-rc7
v6.9.1

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.9.0
Fixed
6.9.2