CVE-2024-27411
MEDIUMLinux Kernel 6.7.6-6.7.9 - Denial of Service via Nouveau DMA Buffer Deallocation
Title source: llmDescription
In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: keep DMA buffers required for suspend/resume Nouveau deallocates a few buffers post GPU init which are required for GPU suspend/resume to function correctly. This is likely not as big an issue on systems where the NVGPU is the only GPU, but on multi-GPU set ups it leads to a regression where the kernel module errors and results in a system-wide rendering freeze. This commit addresses that regression by moving the two buffers required for suspend and resume to be deallocated at driver unload instead of post init.
References (2)
Core 2
Scores
CVSS v3
5.5
EPSS
0.0019
EPSS Percentile
9.1%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
Status
published
Products (6)
linux/Kernel
6.7.6 - 6.7.9linux
Linux/Linux
042b5f83841fbf7ce39474412db3b5e4765a7ea7 - f6ecfdad359a01c7fd8a3bcfde3ef0acdf107e6e
Linux/Linux
6.7.6 - 6.7.9
Linux/Linux
6190d4c08897d748dd25f0b78267a90aa1694e15 - be00e15b240ed71fc30c0576af7ab670c8271661
linux/linux_kernel
6.8 rc4 (3 CPE variants)
linux/linux_kernel
6.7.6 - 6.7.9
Published
May 17, 2024
Tracked Since
Feb 18, 2026