Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-35795

17
FAUCET Score

CVE-2024-35795 is a deadlock vulnerability in the Linux kernel's amdgpu graphics driver, specifically within the debugfs component. This flaw can be triggered when reading MQD (Memory Queue Descriptor) data from debugfs, potentially leading to a system hard-reset. It affects Linux kernel versions. The vulnerability has a CVSS score of 5.5 (Medium), indicating a local attack vector with low attack complexity and requiring low privileges. The primary impact is a high availability loss (system crash), with no impact on confidentiality or integrity. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage regarding this CVE. It is not listed on CISA's Known Exploited Vulnerabilities (KEV) catalog.

Impacted Technologies

VendorProductVersion(s)CPE
>= 6.5, < 6.6.24CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.7, < 6.7.12CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.8, < 6.8.3CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
6.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:6.9:rc1:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.17%
Probability of exploitation in next 30 days
EPSS Percentile
6.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0017 is in the 38th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (8)

microsoftpatch availablevia msrc
Product: azl3 hyperv-daemons 6.6.22.1-2 on Azure Linux 3.0Fixed in: 6.6.35.1-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 ARMFixed in: 6.6.35.1-1
microsoftpatch availablevia msrc
Product: azl3 hyperv-daemons 6.6.35.1-1 on Azure Linux 3.0Fixed in: 6.6.35.1-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 x64Fixed in: 6.6.35.1-1
microsoftpatch availablevia msrc
Product: 16989-17084Fixed in: 6.6.35.1-1
microsoftpatch availablevia msrc
Product: 17785-17084Fixed in: 6.6.35.1-1
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-503.11.1.el9_5
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (3)

microsoft2024-Sep/CVE-2024-35795

CVE-2024-35795

Sep 10, 2024
redhatCVE-2024-35795Moderate

kernel: drm/amdgpu: fix deadlock while reading mqd from debugfs

May 17, 2024
microsoft2024-May/CVE-2024-35795Moderate

drm/amdgpu: fix deadlock while reading mqd from debugfs

May 14, 2024

References

git.kernel.org / stable/c/197f6d6987c55860f6eea1c93e4f800c59078874
Patch
git.kernel.org / stable/c/4687e3c6ee877ee25e57b984eca00be53b9a8db5
Patch
git.kernel.org / stable/c/8678b1060ae2b75feb60b87e5b75e17374e3c1c5
Patch
git.kernel.org / stable/c/8b03556da6e576c62664b6cd01809e4a09d53b5b
Patch