CVE-2024-35836
Linux Kernel vulnerability analysis and mitigation

Overview

A vulnerability in the Linux kernel's DPLL (Digital Phase-Locked Loop) subsystem has been identified and tracked as CVE-2024-35836. The issue occurs when a kernel module is unbound while pin resources are not entirely freed, and the module is subsequently rebound. This vulnerability was discovered in May 2024 and affects the Linux kernel's DPLL framework (Kernel Git).

Technical details

The vulnerability manifests when a kernel module is unbound but pin resources are not completely freed due to other kernel module instances of the same PCI device maintaining references to the pin. Upon rebinding the module, the pin properties remain unupdated since they are only assigned during pin memory allocation. The prop pointer continues to reference the deallocated kernel module memory from the unbind operation. This condition leads to a kernel crash when pin dump is invoked (Kernel Git).

Impact

When exploited, this vulnerability results in a kernel crash, affecting system stability and availability. The issue specifically impacts the DPLL subsystem's pin dump functionality when operating under specific module binding conditions (Kernel Git).

Exploitability

The vulnerability requires specific conditions to be exploited: a kernel module must be unbound with retained pin resources, then rebound, followed by a pin dump operation. This sequence of events leads to the kernel crash (Kernel Git).

Mitigation and workarounds

The issue has been resolved by implementing persistent pin properties storage in the DPLL subsystem. The fix involves copying content from the kernel module when the pin is allocated, rather than using the kernel module's memory directly. This solution prevents the crash scenario by maintaining proper memory management (Kernel Git).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-74583NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-debug
NoYesAug 21, 2026
CVE-2026-74582NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel.src
NoYesAug 21, 2026
CVE-2026-74581NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-64k-modules-internal
NoYesAug 21, 2026
CVE-2026-74580NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-debug
NoYesAug 21, 2026
CVE-2025-30156NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-debug-devel-matched
NoYesAug 21, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management