cbcvebase.
CVE-2024-38543
published 2024-06-19

CVE-2024-38543: In the Linux kernel, the following vulnerability has been resolved: lib/test_hmm.c: handle src_pfns and dst_pfns allocation failure The kcalloc() in…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
15.2th percentile
In the Linux kernel, the following vulnerability has been resolved: lib/test_hmm.c: handle src_pfns and dst_pfns allocation failure The kcalloc() in dmirror_device_evict_chunk() will return null if the physical memory has run out. As a result, if src_pfns or dst_pfns is dereferenced, the null pointer dereference bug will happen. Moreover, the device is going away. If the kcalloc() fails, the pages mapping a chunk could not be evicted. So add a __GFP_NOFAIL flag in kcalloc(). Finally, as there is no need to have physically contiguous memory, Switch kcalloc() to kvcalloc() in order to avoid failing allocations.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux>= b2ef9f5a5cb37643ca5def3516c546457074b882 < 1a21fdeea502658e315bd939409b755974f4fb641a21fdeea502658e315bd939409b755974f4fb64
linuxlinux>= b2ef9f5a5cb37643ca5def3516c546457074b882 < 65e528a69cb3ed4a286c45b4afba57461c8b5b3365e528a69cb3ed4a286c45b4afba57461c8b5b33
linuxlinux>= b2ef9f5a5cb37643ca5def3516c546457074b882 < ce47e8ead9a72834cc68431d53f8092ce69bebb7ce47e8ead9a72834cc68431d53f8092ce69bebb7
linuxlinux>= b2ef9f5a5cb37643ca5def3516c546457074b882 < 3b20d18f475bd17309db640dbe7d7c7ebb5bc2bc3b20d18f475bd17309db640dbe7d7c7ebb5bc2bc
linuxlinux>= b2ef9f5a5cb37643ca5def3516c546457074b882 < c2af060d1c18beaec56351cf9c9bcbbc5af341a3c2af060d1c18beaec56351cf9c9bcbbc5af341a3
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 5.8 < 6.1.936.1.93
linuxlinux_kernel>= 6.2 < 6.6.336.6.33
linuxlinux_kernel>= 6.7 < 6.8.126.8.12
linuxlinux_kernel>= 6.9 < 6.9.36.9.3
msrccbl2_kernel_5.15.186.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.200.1-1_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.202.1-1_on_cbl_mariner_2.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.