Answer in brief
CVE-2024-39292 records a Unknown severity vulnerability in um: Add winch to winch_handlers before registering winch IRQ. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-39292 records a Unknown severity vulnerability in um: Add winch to winch_handlers before registering winch IRQ. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <66ea9a7c6824821476914bed21a476cd20094f33 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <dc1ff95602ee908fcd7d8acee7a0dadb61b1a0c0 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <351d1a64544944b44732f6a64ed65573b00b9e14 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <31960d991e43c8d6dc07245f19fc13398e90ead2 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <0c02d425a2fbe52643a5859a779db0329e7dddd4 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <434a06c38ee1217a8baa0dd7c37cc85d50138fb0 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <73b8e21f76c7dda4905655d2e2c17dc5a73b87f1 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <a0fbbd36c156b9f7b2276871d499c9943dfe5101 | 66ea9a7c6824821476914bed21a476cd20094f33, dc1ff95602ee908fcd7d8acee7a0dadb61b1a0c0, 351d1a64544944b44732f6a64ed65573b00b9e14, 31960d991e43c8d6dc07245f19fc13398e90ead2, 0c02d425a2fbe52643a5859a779db0329e7dddd4, 434a06c38ee1217a8baa0dd7c37cc85d50138fb0, 73b8e21f76c7dda4905655d2e2c17dc5a73b87f1, a0fbbd36c156b9f7b2276871d499c9943dfe5101 |
| Linux/Linuxgeneric | 2.6.23 | Not reported |
Published upstream
Jun 24, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: um: Add winch to winch_handlers before registering winch IRQ Registering a winch IRQ is racy, an interrupt may occur before the winch is added to the winch_handlers list. If that happens, register_winch_irq() adds to that list a winch that is scheduled to be (or has already been) freed, causing a panic later in winch_cleanup(). Avoid the race by adding the winch to the winch_handlers list before registering the IRQ, and rolling back if um_request_irq() fails.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <66ea9a7c6824821476914bed21a476cd20094f33 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <dc1ff95602ee908fcd7d8acee7a0dadb61b1a0c0 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <351d1a64544944b44732f6a64ed65573b00b9e14 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <31960d991e43c8d6dc07245f19fc13398e90ead2 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <0c02d425a2fbe52643a5859a779db0329e7dddd4 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <434a06c38ee1217a8baa0dd7c37cc85d50138fb0 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <73b8e21f76c7dda4905655d2e2c17dc5a73b87f1 || >=42a359e31a0e438b5b978a8f0fecdbd3c86bb033 <a0fbbd36c156b9f7b2276871d499c9943dfe5101 | 66ea9a7c6824821476914bed21a476cd20094f33, dc1ff95602ee908fcd7d8acee7a0dadb61b1a0c0, 351d1a64544944b44732f6a64ed65573b00b9e14, 31960d991e43c8d6dc07245f19fc13398e90ead2, 0c02d425a2fbe52643a5859a779db0329e7dddd4, 434a06c38ee1217a8baa0dd7c37cc85d50138fb0, 73b8e21f76c7dda4905655d2e2c17dc5a73b87f1, a0fbbd36c156b9f7b2276871d499c9943dfe5101 |
| Linux/Linuxgeneric | 2.6.23 | Not reported |
Published upstream
Jun 24, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: um: Add winch to winch_handlers before registering winch IRQ Registering a winch IRQ is racy, an interrupt may occur before the winch is added to the winch_handlers list. If that happens, register_winch_irq() adds to that list a winch that is scheduled to be (or has already been) freed, causing a panic later in winch_cleanup(). Avoid the race by adding the winch to the winch_handlers list before registering the IRQ, and rolling back if um_request_irq() fails.
Quoted source text, attributed separately from HOL analysis.