CVE-2024-44994

MEDIUM

Linux Kernel 6.9-6.10.6 - Denial of Service via Missing Return in iommu_report_device_fault

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: iommu: Restore lost return in iommu_report_device_fault() When iommu_report_device_fault gets called with a partial fault it is supposed to collect the fault into the group and then return. Instead the return was accidently deleted which results in trying to process the fault and an eventual crash. Deleting the return was a typo, put it back.

Scores

CVSS v3 5.5
EPSS 0.0018
EPSS Percentile 8.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (9)
linux/Kernel 6.9.0 - 6.10.7linux
Linux/Linux < 6.9
Linux/Linux 3dfa64aecbafc288216b2790438d395add192c30 - cc6bc2ab1663ec9353636416af22452b078510e9
Linux/Linux 3dfa64aecbafc288216b2790438d395add192c30 - fca5b78511e98bdff2cdd55c172b23200a7b3404
Linux/Linux 6.10.7 - 6.10.*
Linux/Linux 6.11
Linux/Linux 6.9
linux/linux_kernel 6.11 rc1 (3 CPE variants)
linux/linux_kernel 6.9 - 6.10.7
Published Sep 04, 2024
Tracked Since Feb 18, 2026