Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's ath10k wireless driver can lead to system crashes. This issue arises when ath10k loses connection with the PCIe bus, causing a watchdog timeout during system resume. The driver fails to stop certain virtual devices, leading to a panic state. To prevent crashes, a recovery mechanism has been implemented, which skips ath10k operations if the hardware is deemed unreliable.
The vulnerability can cause system crashes by triggering a watchdog timeout, which disrupts normal operations and can lead to a complete system failure.
The vulnerability can be reproduced by using a system with a Qualcomm Atheros QCA6174 wireless chip, under conditions where the ath10k driver loses connection with the PCIe bus. This can be simulated by causing a disruption in the PCIe connection, which leads to a failure in managing virtual devices, ultimately causing a system crash due to a watchdog timeout.
Users can update to the latest version of the Linux kernel, where this vulnerability has been addressed. Instructions for updating the kernel can be found in the official Linux documentation.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.