CVE-2024-46674·Kernel vulnerability
In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: st: fix probed platform device ref count on probe error path The probe function never performs any paltform device allocation, thus error path "undo_platform_dev_alloc" is entirely bogus. It drops the reference count from the platform device being probed. If error path is triggered, this will lead to unbalanced device reference counts and premature release of device resources, thus possible use-after-free when releasing remaining devm-managed resources.
- Severity
- high
- Software
- Kernel
- Fixed in
- 6.10.8
- Published
- 2024-09-13
Affected versions
From: 6.7
Until: 6.10.8
Fixed in: 6.10.8
How to fix this CVE
Update your Linux kernel to version 6.10.8 or later to resolve a critical reference counting flaw in the USB DWC3 ST driver. This vulnerability can cause resource leaks and use-after-free conditions when the probe function encounters errors, potentially leading to system instability or privilege escalation. Affected systems running kernel versions 6.7 through 6.10.7 should prioritize this update.
sudo dnf update kernel kernel-develDefensia detects this vulnerability
How to check if you are affected
- Step 1: Check your current kernel version with `uname -r` and compare against the vulnerable range (6.7.x to 6.10.7)
- Step 2: Verify if USB DWC3 ST driver is loaded on your system by running `lsmod | grep dwc3` (indicates USB controller is active)
- Step 3: Search kernel logs for probe failures related to USB DWC3: `sudo dmesg | grep -i 'dwc3\|usb.*probe.*fail'` or `sudo journalctl -u kernel -g 'dwc3' --since='24 hours ago'`
- Step 4: After patching, confirm the new kernel version with `uname -r` and verify it is 6.10.8 or later, then reboot if needed
FAQ
What is CVE-2024-46674?
This vulnerability exists in the Linux kernel's USB DWC3 ST driver, where an incorrect error handling path improperly decrements platform device reference counts during probe failures. This causes resource deallocation mismatches that can trigger use-after-free errors when device management resources are released.
Is CVE-2024-46674 being actively exploited?
No, CVE-2024-46674 is not currently listed in CISA's Known Exploited Vulnerabilities catalog and no public exploits are available. However, the high CVSS score (7.8) indicates it poses a serious risk once weaponized.
What versions of Kernel are affected by CVE-2024-46674?
Linux kernel versions 6.7.0 through 6.10.7 are vulnerable. The fix is included in kernel 6.10.8 and all subsequent releases.
How do I check if my server is vulnerable to CVE-2024-46674?
Run `uname -r` to check your kernel version. If it falls between 6.7 and 6.10.7 inclusive, your system is vulnerable. Additionally, verify USB DWC3 is present with `lsmod | grep dwc3` to confirm exposure.
Does Defensia detect CVE-2024-46674?
Yes — Defensia's CVE advisory scanner compares installed kernel package versions against the NVD database. If Linux kernel is installed on a monitored server, CVE-2024-46674 will appear in your dashboard with remediation steps and patch guidance.
Related Kernel CVEs
References
- https://git.kernel.org/stable/c/060f41243ad7f6f5249fa7290dda0c01f723d12d
- https://git.kernel.org/stable/c/1de989668708ce5875efc9d669d227212aeb9a90
- https://git.kernel.org/stable/c/4c6735299540f3c82a5033d35be76a5c42e0fb18
- https://git.kernel.org/stable/c/6aee4c5635d81f4809c3b9f0c198a65adfbb2ada
- https://git.kernel.org/stable/c/b0979a885b9d4df2a25b88e9d444ccaa5f9f495c
Track CVEs across your fleet automatically
Defensia scans your Linux servers and tells you exactly which ones are running vulnerable versions — including CVE-2024-46674. Free for 1 server.
Get started free