Описание
Security update for the Linux Kernel RT (Live Patch 0 for SLE 15 SP6)
This update for the Linux Kernel 6.4.0-150600_8 fixes one issue.
The following security issue was fixed:
- CVE-2024-35817: Set gtt bound flag in amdgpu_ttm_gart_bind (bsc#1225313).
Список пакетов
SUSE Linux Enterprise Live Patching 15 SP6
kernel-livepatch-6_4_0-150600_8-rt-3-150600.3.2
Ссылки
- Link for SUSE-SU-2024:3321-1
- E-Mail link for SUSE-SU-2024:3321-1
- SUSE Security Ratings
- SUSE Bug 1225313
- SUSE CVE CVE-2024-35817 page
Описание
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: amdgpu_ttm_gart_bind set gtt bound flag Otherwise after the GTT bo is released, the GTT and gart space is freed but amdgpu_ttm_backend_unbind will not clear the gart page table entry and leave valid mapping entry pointing to the stale system page. Then if GPU access the gart address mistakely, it will read undefined value instead page fault, harder to debug and reproduce the real issue.
Затронутые продукты
SUSE Linux Enterprise Live Patching 15 SP6:kernel-livepatch-6_4_0-150600_8-rt-3-150600.3.2
Ссылки
- CVE-2024-35817
- SUSE Bug 1224736
- SUSE Bug 1225313