CVE-2024-27411

MEDIUM

Linux Kernel 6.7.6-6.7.9 - Denial of Service via Nouveau DMA Buffer Deallocation

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: keep DMA buffers required for suspend/resume Nouveau deallocates a few buffers post GPU init which are required for GPU suspend/resume to function correctly. This is likely not as big an issue on systems where the NVGPU is the only GPU, but on multi-GPU set ups it leads to a regression where the kernel module errors and results in a system-wide rendering freeze. This commit addresses that regression by moving the two buffers required for suspend and resume to be deallocated at driver unload instead of post init.

Scores

CVSS v3 5.5
EPSS 0.0019
EPSS Percentile 9.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (6)
linux/Kernel 6.7.6 - 6.7.9linux
Linux/Linux 042b5f83841fbf7ce39474412db3b5e4765a7ea7 - f6ecfdad359a01c7fd8a3bcfde3ef0acdf107e6e
Linux/Linux 6.7.6 - 6.7.9
Linux/Linux 6190d4c08897d748dd25f0b78267a90aa1694e15 - be00e15b240ed71fc30c0576af7ab670c8271661
linux/linux_kernel 6.8 rc4 (3 CPE variants)
linux/linux_kernel 6.7.6 - 6.7.9
Published May 17, 2024
Tracked Since Feb 18, 2026