CVE-2024-27400Linux vulnerability

12 documents9 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 99.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 14
Latest updateAug 13

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2 This reverts drm/amdgpu: fix ftrace event amdgpu_bo_move always move on same heap. The basic problem here is that after the move the old location is simply not available any more. Some fixes were suggested, but essentially we should call the move notification before actually moving things because only this way we have the correct order for DMA-buf and VM move not

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

NVDlinux/linux_kernel5.15.1495.16+4
Debianlinux/linux_kernel< 6.1.94-1+2
CVEListV5linux/linuxd443fb67ca5ab04760449d21ddea66f6728e5b005c25b169f9a0b34ee410891a96bc9d7b9ed6f9be+6

Also affects: Fedora 39, 40

Patches

🔴Vulnerability Details

3
OSV
CVE-2024-27400: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2 This reverts drm/a2024-05-14
GHSA
GHSA-ww8p-33xg-gvhc: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2 This reverts drm2024-05-14
CVEList
drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v22024-05-13

📋Vendor Advisories

7
Ubuntu
Linux kernel vulnerabilities2024-08-13
Ubuntu
Linux kernel (OEM) vulnerabilities2024-08-12
Ubuntu
Linux kernel vulnerabilities2024-08-09
Ubuntu
Linux kernel vulnerabilities2024-08-08
Microsoft
drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v22024-05-14

💬Community

1
Bugzilla
CVE-2024-27400 kernel: drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v22024-05-14
CVE-2024-27400 — Linux vulnerability | cvebase