CVE-2024-36887: Linux Kernel
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: e1000e: change usleep_range to udelay in PHY mdic access This is a partial revert of commit 6dbdd4de0362 ("e1000e: Workaround for sporadic MDI error on Meteor Lake systems"). The referenced commit used usleep_range inside the PHY access routines, which are sometimes called from an atomic context. This can lead to a kernel panic in some scenarios, such as cable disconnection and reconnection on vPro systems. Solve this by changing the usleep_range calls back to udelay.
Affected products
- Linux Linux Kernel: from 6.6.26, before 6.6.31 (fixed in 6.6.31); from 6.8.5, before 6.8.10 (fixed in 6.8.10); version 6.9 only
Published 2024-05-30. Last modified 2026-06-17.