cbcvebase.
CVE-2024-53072
published 2024-11-19

CVE-2024-53072: In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Detect when STB is not available Loading the amd_pmc module as…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.8th percentile
In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Detect when STB is not available Loading the amd_pmc module as: amd_pmc enable_stb=1 ...can result in the following messages in the kernel ring buffer: amd_pmc AMDI0009:00: SMU cmd failed. err: 0xff ioremap on RAM at 0x0000000000000000 - 0x0000000000ffffff WARNING: CPU: 10 PID: 2151 at arch/x86/mm/ioremap.c:217 __ioremap_caller+0x2cd/0x340 Further debugging reveals that this occurs when the requests for S2D_PHYS_ADDR_LOW and S2D_PHYS_ADDR_HIGH return a value of 0, indicating that the STB is inaccessible. To prevent the ioremap warning and provide clarity to the user, handle the invalid address and display an error message.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.119-1 (bookworm)linux 6.1.119-1 (bookworm)
debianlinux-6.1< linux 6.1.119-1 (bookworm)linux 6.1.119-1 (bookworm)
linuxlinux
linuxlinux>= 3d7d407dfb05b257e15cb0c6b056428a4a8c2e5d < a50863dd1f92d43c975ab2ecc3476617fe98a66ea50863dd1f92d43c975ab2ecc3476617fe98a66e
linuxlinux>= 3d7d407dfb05b257e15cb0c6b056428a4a8c2e5d < 7a3ed3f125292bc3398e04d10108124250892e3f7a3ed3f125292bc3398e04d10108124250892e3f
linuxlinux>= 3d7d407dfb05b257e15cb0c6b056428a4a8c2e5d < 67ff30e24a0466bdd5be1d0b84385ec3c85fdacd67ff30e24a0466bdd5be1d0b84385ec3c85fdacd
linuxlinux>= 3d7d407dfb05b257e15cb0c6b056428a4a8c2e5d < bceec87a73804bb4c33b9a6c96e2d27cd893a801bceec87a73804bb4c33b9a6c96e2d27cd893a801
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.119-16.1.119-1
linuxlinux_kernel>= 0 < 6.11.9-16.11.9-1
linuxlinux_kernel>= 0 < 6.11.9-16.11.9-1
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 5.18 < 6.1.1176.1.117
linuxlinux_kernel>= 6.2 < 6.6.616.6.61
linuxlinux_kernel>= 6.7 < 6.11.86.11.8
msrcazl3_kernel_6.6.57.1-7_on_azure_linux_3.0
msrcazl3_kernel_6.6.64.2-1_on_azure_linux_3.0

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.