CVE-2024-35931 is a vulnerability in the Linux kernel's AMD GPU (amdgpu) driver, specifically affecting the handling of PCI error slot resets during RAS (Reliability, Availability, and Serviceability) recovery. This flaw can lead to a system hang, as observed when multiple UMC (Uncorrectable Memory Error) injections trigger the PCI error slot reset. The vulnerability is rated Medium with a CVSS score of 5.5 (AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H), indicating that a local attacker with low privileges could cause a high impact on system availability. There is currently no evidence of active exploitation, and no public exploit code or Metasploit/Nuclei modules are available. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 4.2, < 6.8.6CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.