Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-56532

17
FAUCET Score

CVE-2024-56532 addresses a vulnerability in the Linux kernel's ALSA us122l driver, where the use of snd_card_free() during USB device disconnection could lead to a soft lockup by blocking upper-layer USB ioctls. This issue, affecting the Linux kernel, has been resolved by replacing snd_card_free() with snd_card_free_when_closed(), which allows for asynchronous resource release. The vulnerability is rated Medium severity with a CVSS score of 5.5 (AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H), indicating a local attack vector with low complexity, requiring low privileges, and resulting in high availability impact (denial of service) without affecting confidentiality or integrity. There is currently no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, consistent with the majority of reported vulnerabilities.

Impacted Technologies

VendorProductVersion(s)CPE
>= 2.6.28, < 4.19.325CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.287CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.231CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.174CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.120CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.21%
Probability of exploitation in next 30 days
EPSS Percentile
12.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0021 is in the 54th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (5)

autodeskpatch availablevia llm_extracted
View patch
freepbxpatch availablevia llm_extracted
View patch
honeywellpatch availablevia llm_extracted
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (4)

honeywellllm-honeywell-c82b5cfda9df97a3CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
autodeskllm-autodesk-c365b674a2ff5a3aCRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
freepbxllm-freepbx-e54908c7967265f6CRITICAL

HP ThinPro 8.1 SP8 Security Updates

Oct 27, 2025
redhatCVE-2024-56532Low

kernel: ALSA: us122l: Use snd_card_free_when_closed() at disconnection

Dec 27, 2024

References

git.kernel.org / stable/c/020cbc4d7414f0962004213e2b7bc5cc607e9ec7
Patch
git.kernel.org / stable/c/2938dd2648522336133c151dd67bb9bf01cbd390
Patch
git.kernel.org / stable/c/75f418b249d84021865eaa59515d3ed9b75ce4d6
Patch
git.kernel.org / stable/c/9a48bd2184b142c92a4e17eac074c61fcf975bc9
Patch
git.kernel.org / stable/c/9b27924dc8d7f8a8c35e521287d4ccb9a006e597
Patch
git.kernel.org / stable/c/9d5c530e4d70f64b1114f2cc29ac690ba7ac4a38
Patch
git.kernel.org / stable/c/b7df09bb348016943f56b09dcaafe221e3f73947
Patch
git.kernel.org / stable/c/bc778ad3e495333eebda36fe91d5b2c93109cc16
Patch
git.kernel.org / stable/c/bf0aa35a7cb8602cccf2387712114e836f65c154
Patch
lists.debian.org / debian-lts-announce/2025/03/msg00001.html
lists.debian.org / debian-lts-announce/2025/03/msg00002.html