Описание
[REJECTED CVE] A vulnerability has been identified in the Linux kernel's drm/nouveau/firmware module, where enabling SG_DEBUG causes a kernel BUG() in nvkm_firmware_ctor(). This occurs because DMA-allocated memory cannot be converted into memory pages, leading to an invalid scatterlist mapping. An attacker with control over kernel parameters or device initialization could potentially trigger this bug, causing a system crash or denial of service.
Отчет
This CVE has been rejected upstream: https://lore.kernel.org/linux-cve-announce/2024121903-REJECTED-086f@gregkh/
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | kernel | Out of support scope | ||
Red Hat Enterprise Linux 7 | kernel | Out of support scope | ||
Red Hat Enterprise Linux 7 | kernel-rt | Out of support scope | ||
Red Hat Enterprise Linux 8 | kernel | Fix deferred | ||
Red Hat Enterprise Linux 8 | kernel-rt | Fix deferred | ||
Red Hat Enterprise Linux 9 | kernel-rt | Affected | ||
Red Hat Enterprise Linux 9 | kernel | Fixed | RHSA-2024:9315 | 12.11.2024 |
Red Hat Enterprise Linux 9 | kernel | Fixed | RHSA-2024:9315 | 12.11.2024 |
Показывать по
10
Дополнительная информация
Статус:
Low
Дефект:
CWE-489
https://bugzilla.redhat.com/show_bug.cgi?id=2284265kernel: drm/nouveau/firmware: Fix SG_DEBUG error with nvkm_firmware_ctor()
4.4 Medium
CVSS3
4.4 Medium
CVSS3