CVE-2024-27406

In the Linux kernel, the following vulnerability has been resolved: lib/Kconfig.debug: TEST_IOV_ITER depends on MMU Trying to run the iov_iter unit test on a nommu system such as the qemu kc705-nommu emulation results in a crash. KTAP version 1 # Subtest: iov_iter # module: kunit_iov_iter 1..9 BUG: failure at mm/nommu.c:318/vmap()! Kernel panic - not syncing: BUG! The test calls vmap() directly, but vmap() is not supported on nommu systems, causing the crash. TEST_IOV_ITER therefore needs to depend on MMU.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc4:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc5:*:*:*:*:*:*

History

18 Sep 2025, 17:30

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-476
References () https://git.kernel.org/stable/c/1eb1e984379e2da04361763f66eec90dd75cf63e - () https://git.kernel.org/stable/c/1eb1e984379e2da04361763f66eec90dd75cf63e - Patch
References () https://git.kernel.org/stable/c/9e6e541b97762d5b1143070067f7c68f39a408f8 - () https://git.kernel.org/stable/c/9e6e541b97762d5b1143070067f7c68f39a408f8 - Patch
References () https://git.kernel.org/stable/c/e6316749d603fe9c4c91f6ec3694e06e4de632a3 - () https://git.kernel.org/stable/c/e6316749d603fe9c4c91f6ec3694e06e4de632a3 - Patch
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:6.8:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc3:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc5:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.8:rc4:*:*:*:*:*:*

21 Nov 2024, 09:04

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/1eb1e984379e2da04361763f66eec90dd75cf63e - () https://git.kernel.org/stable/c/1eb1e984379e2da04361763f66eec90dd75cf63e -
References () https://git.kernel.org/stable/c/9e6e541b97762d5b1143070067f7c68f39a408f8 - () https://git.kernel.org/stable/c/9e6e541b97762d5b1143070067f7c68f39a408f8 -
References () https://git.kernel.org/stable/c/e6316749d603fe9c4c91f6ec3694e06e4de632a3 - () https://git.kernel.org/stable/c/e6316749d603fe9c4c91f6ec3694e06e4de632a3 -
Summary
  • (es) En el kernel de Linux, se resolvió la siguiente vulnerabilidad: lib/Kconfig.debug: TEST_IOV_ITER depende de MMU Intentar ejecutar la prueba unitaria iov_iter en un sistema nommu como la emulación qemu kc705-nommu produce un bloqueo. KTAP versión 1 # Subprueba: iov_iter # módulo: kunit_iov_iter 1..9 BUG: fallo en mm/nommu.c:318/vmap()! Pánico del kernel: no se sincroniza: ¡BUG! La prueba llama a vmap() directamente, pero vmap() no es compatible con los sistemas nommu, lo que provoca el bloqueo. Por lo tanto, TEST_IOV_ITER debe depender de MMU.

17 May 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-17 12:15

Updated : 2025-09-18 17:30


NVD link : CVE-2024-27406

Mitre link : CVE-2024-27406

CVE.ORG link : CVE-2024-27406


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-476

NULL Pointer Dereference