Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-40979

17
FAUCET Score

Overview: CVE-2024-40979 is a vulnerability in the Linux kernel's ath12k Wi-Fi driver that can lead to a kernel crash during system resume. This occurs due to improper handling of QMI target memory, specifically when DMA remapping is not supported, causing incorrect memory deallocation. It affects Linux kernel versions utilizing the ath12k driver. Severity: Rated as Medium (CVSS 5.5), this vulnerability has a local attack vector with low attack complexity, requiring local privileges. The potential impact is a denial of service (system crash), with no impact on confidentiality or integrity. Exploitation Status: There is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit or ExploitDB. Community discussion and media coverage are minimal, indicating low public attention.

Impacted Technologies

VendorProductVersion(s)CPE
>= 6.3, < 6.9.7CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.26%
Probability of exploitation in next 30 days
EPSS Percentile
17.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0026 is in the 70th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (2)

redhatCVE-2024-40979Moderate

kernel: wifi: ath12k: fix kernel crash during resume

Jul 12, 2024
microsoft2024-Jul/CVE-2024-40979Moderate

wifi: ath12k: fix kernel crash during resume

Jul 9, 2024

References

git.kernel.org / stable/c/303c017821d88ebad887814114d4e5966d320b28
Patch
git.kernel.org / stable/c/bb50a4e711ff95348ad53641acb1306d89eb4c3a
Patch