CVE-2024-40924

In the Linux kernel, the following vulnerability has been resolved: drm/i915/dpt: Make DPT object unshrinkable In some scenarios, the DPT object gets shrunk but the actual framebuffer did not and thus its still there on the DPT's vm->bound_list. Then it tries to rewrite the PTEs via a stale CPU mapping. This causes panic. [vsyrjala: Add TODO comment] (cherry picked from commit 51064d471c53dcc8eddd2333c3f1c1d9131ba36c)
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.10:rc1:*:*:*:*:*:*

History

03 Nov 2025, 22:17

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html -

06 Oct 2025, 20:53

Type Values Removed Values Added
First Time Linux linux Kernel
Linux
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.10:rc1:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/327280149066f0e5f2e50356b5823f76dabfe86e - () https://git.kernel.org/stable/c/327280149066f0e5f2e50356b5823f76dabfe86e - Patch
References () https://git.kernel.org/stable/c/43e2b37e2ab660c3565d4cff27922bc70e79c3f1 - () https://git.kernel.org/stable/c/43e2b37e2ab660c3565d4cff27922bc70e79c3f1 - Patch
References () https://git.kernel.org/stable/c/7a9883be3b98673333eec65c4a21cc18e60292eb - () https://git.kernel.org/stable/c/7a9883be3b98673333eec65c4a21cc18e60292eb - Patch
References () https://git.kernel.org/stable/c/a2552020fb714ff357182c3c179abfac2289f84d - () https://git.kernel.org/stable/c/a2552020fb714ff357182c3c179abfac2289f84d - Patch

21 Nov 2024, 09:31

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/327280149066f0e5f2e50356b5823f76dabfe86e - () https://git.kernel.org/stable/c/327280149066f0e5f2e50356b5823f76dabfe86e -
References () https://git.kernel.org/stable/c/43e2b37e2ab660c3565d4cff27922bc70e79c3f1 - () https://git.kernel.org/stable/c/43e2b37e2ab660c3565d4cff27922bc70e79c3f1 -
References () https://git.kernel.org/stable/c/7a9883be3b98673333eec65c4a21cc18e60292eb - () https://git.kernel.org/stable/c/7a9883be3b98673333eec65c4a21cc18e60292eb -
References () https://git.kernel.org/stable/c/a2552020fb714ff357182c3c179abfac2289f84d - () https://git.kernel.org/stable/c/a2552020fb714ff357182c3c179abfac2289f84d -
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: drm/i915/dpt: hacer que el objeto DPT no se pueda reducir. En algunos escenarios, el objeto DPT se reduce pero el framebuffer real no y, por lo tanto, sigue ahí en vm->bound_list del DPT. Luego intenta reescribir las PTE mediante una asignación de CPU obsoleta. Esto provoca pánico. [vsyrjala: Agregar comentario TODO] (seleccionado del commit 51064d471c53dcc8eddd2333c3f1c1d9131ba36c)

12 Jul 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-12 13:15

Updated : 2025-11-03 22:17


NVD link : CVE-2024-40924

Mitre link : CVE-2024-40924

CVE.ORG link : CVE-2024-40924


JSON object : View

Products Affected

linux

  • linux_kernel