PT-2024-9956 · Linux+3 · Linux Kernel+3

·

CVE-2024-26807

·

Published

2024-01-24

·

Updated

2026-08-25

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: The issue is related to the cadence-quadspi driver in the Linux kernel. The ->runtime suspend() and ->runtime resume() implementations start with incorrect assignments, leading to memory corruption and kernel crashes. The struct spi controller *host = dev get drvdata(dev); line is incorrect, as it makes the host point to the same struct cqspi st structure as cqspi, instead of a struct spi controller. This leads to bad things, such as memory corruption and kernel crashes, directly during the ->probe() function, as it enables the device using PM runtime, leading to the ->runtime resume() hook being called, which in turn calls spi controller resume() with the wrong pointer.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Memory Corruption

Use After Free

Improper Locking

NULL Pointer Dereference

Buffer Overflow

Untrusted Pointer Dereference

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2025-00068
BDU:2025-04395
BDU:2025-04396
BDU:2025-07485
CVE-2024-26807
DLA-4271-1
DSA-5925-1
ECHO-90CE-AECF-2CBF
OPENSUSE-SU-2024_1490-1
OPENSUSE-SU-2024_1659-1
OPENSUSE-SU-2024_1663-1
SUSE-SU-2024:1490-1
SUSE-SU-2024:1659-1
SUSE-SU-2024:1663-1
SUSE-SU-2024:2135-1
SUSE-SU-2024:2203-1
SUSE-SU-2024:2973-1
SUSE-SU-2025:20008-1

Affected Products

Debian
Linux Kernel
Red Os
Suse