Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-46797

17
FAUCET Score

CVE-2024-46797 describes a deadlock vulnerability in the Linux kernel's powerpc/qspinlock implementation, specifically affecting the MCS queue mechanism. This flaw occurs when an interrupt during queued_spin_lock_slowpath() leads to stale lock values, causing a CPU to incorrectly update a qnode's "next" pointer and resulting in an indefinite spin. The vulnerability is rated Medium severity (CVSS 5.5) with a local attack vector and low attack complexity, potentially leading to high availability impact (system lockup) but no confidentiality or integrity compromise. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 6.2, < 6.6.51CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.7, < 6.10.10CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
6.11CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:6.11:rc1:*:*:*:*:*:*
6.11CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:6.11:rc2:*:*:*:*:*:*
6.11CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:6.11:rc3:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.16%
Probability of exploitation in next 30 days
EPSS Percentile
5.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0016 is in the 35th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (10)

codesyspatch availablevia llm_extracted
View patch
esphomepatch availablevia llm_extracted
View patch
microsoftpatch availablevia msrc
Product: 17610-17084Fixed in: 6.6.51.1-5
microsoftpatch availablevia msrc
Product: 17651-17084Fixed in: 6.6.51.1-5
microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.47.1-1 on Azure Linux 3.0Fixed in: 6.6.51.1-5
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 ARMFixed in: 6.6.51.1-5
microsoftpatch availablevia msrc
Product: azl3 kernel 6.6.51.1-5 on Azure Linux 3.0Fixed in: 6.6.51.1-5
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 x64Fixed in: 6.6.51.1-5
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel

Vendor Advisories (5)

codesysllm-codesys-fe85e88fbae25bb9CRITICAL

HP ThinPro 8.1 SP7 Security Updates

Jun 3, 2025
esphomellm-esphome-ed450ce9fd6a7380CRITICAL

HP ThinPro 8.1 SP7 Security Updates

Jun 3, 2025
microsoft2024-Oct/CVE-2024-46797

CVE-2024-46797

Oct 8, 2024
redhatCVE-2024-46797Low

kernel: powerpc/qspinlock: Fix deadlock in MCS queue

Sep 18, 2024
microsoft2024-Sep/CVE-2024-46797Moderate

powerpc/qspinlock: Fix deadlock in MCS queue

Sep 10, 2024

References

git.kernel.org / stable/c/734ad0af3609464f8f93e00b6c0de1e112f44559
Patch
git.kernel.org / stable/c/d84ab6661e8d09092de9b034b016515ef9b66085
Patch
git.kernel.org / stable/c/f06af737e4be28c0e926dc25d5f0a111da4e2987
Patch