cbcvebase.
CVE-2024-26943
published 2024-05-01

CVE-2024-26943: In the Linux kernel, the following vulnerability has been resolved: nouveau/dmem: handle kcalloc() allocation failure The kcalloc() in…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
13.2th percentile
In the Linux kernel, the following vulnerability has been resolved: nouveau/dmem: handle kcalloc() allocation failure The kcalloc() in nouveau_dmem_evict_chunk() will return null if the physical memory has run out. As a result, if we dereference src_pfns, dst_pfns or dma_addrs, the null pointer dereference bugs will happen. Moreover, the GPU is going away. If the kcalloc() fails, we could not evict all pages mapping a chunk. So this patch adds a __GFP_NOFAIL flag in kcalloc(). Finally, as there is no need to have physically contiguous memory, this patch switches kcalloc() to kvcalloc() in order to avoid failing allocations.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= 249881232e1471d28b68f9a3829acc14d150cf5d < 9acfd8b083a0ffbd387566800d89f55058a68af29acfd8b083a0ffbd387566800d89f55058a68af2
linuxlinux>= 249881232e1471d28b68f9a3829acc14d150cf5d < 2a84744a037b8a511d6a9055f3defddc28ff4a4d2a84744a037b8a511d6a9055f3defddc28ff4a4d
linuxlinux>= 249881232e1471d28b68f9a3829acc14d150cf5d < 5e81773757a95fc298e96cfd6d4700f07b6192a25e81773757a95fc298e96cfd6d4700f07b6192a2
linuxlinux>= 249881232e1471d28b68f9a3829acc14d150cf5d < 3e82f7383e0b82a835e6b6b06a348b2bc4e2c2ee3e82f7383e0b82a835e6b6b06a348b2bc4e2c2ee
linuxlinux>= 249881232e1471d28b68f9a3829acc14d150cf5d < 16e87fe23d4af6df920406494ced5c0f4354567b16e87fe23d4af6df920406494ced5c0f4354567b
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 6.1 < 6.1.846.1.84
linuxlinux_kernel>= 6.2 < 6.6.246.6.24
linuxlinux_kernel>= 6.7 < 6.7.126.7.12
linuxlinux_kernel>= 6.8 < 6.8.36.8.3
msrcazl3_hyperv-daemons_6.6.22.1-2_on_azure_linux_3.0
msrcazl3_hyperv-daemons_6.6.35.1-1_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu6.3MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.