{"id":"DEBIAN-CVE-2024-43862","details":"In the Linux kernel, the following vulnerability has been resolved:  net: wan: fsl_qmc_hdlc: Convert carrier_lock spinlock to a mutex  The carrier_lock spinlock protects the carrier detection. While it is held, framer_get_status() is called which in turn takes a mutex. This is not correct and can lead to a deadlock.  A run with PROVE_LOCKING enabled detected the issue:   [ BUG: Invalid wait context ]   ...   c204ddbc (&framer-\u003emutex){+.+.}-{3:3}, at: framer_get_status+0x40/0x78   other info that might help us debug this:   context-{4:4}   2 locks held by ifconfig/146:   #0: c0926a38 (rtnl_mutex){+.+.}-{3:3}, at: devinet_ioctl+0x12c/0x664   #1: c2006a40 (&qmc_hdlc-\u003ecarrier_lock){....}-{2:2}, at: qmc_hdlc_framer_set_carrier+0x30/0x98  Avoid the spinlock usage and convert carrier_lock to a mutex.","modified":"2026-09-15T09:03:08.918943545Z","published":"2024-08-21T00:15:04.773Z","upstream":["CVE-2024-43862"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2024-43862"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.10.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2024-43862.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.10.4-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2024-43862.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}