CVE-2024-56756

Source
https://cve.org/CVERecord?id=CVE-2024-56756
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56756.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-56756
Downstream
Related
Published
2024-12-29T11:30:20.516Z
Modified
2026-03-20T12:41:00.664712Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
nvme-pci: fix freeing of the HMB descriptor table
Details

In the Linux kernel, the following vulnerability has been resolved:

nvme-pci: fix freeing of the HMB descriptor table

The HMB descriptor table is sized to the maximum number of descriptors that could be used for a given device, but _nvmeallochostmem could break out of the loop earlier on memory allocation failure and end up using less descriptors than planned for, which leads to an incorrect size passed to dmafreecoherent.

In practice this was not showing up because the number of descriptors tends to be low and the dma coherent allocator always allocates and frees at least a page.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/56xxx/CVE-2024-56756.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
87ad72a59a38d1df217cfd95bc222a2edfe5d399
Fixed
ac22240540e0c5230d8c4138e3778420b712716a
Fixed
452f9ddd12bebc04cef741e8ba3806bf0e1fd015
Fixed
869cf50b9c9d1059f5223f79ef68fc0bc6210095
Fixed
fb96d5cfa97a7363245b3dd523f475b04296d87b
Fixed
cee3bff51a35cab1c5d842d409a7b11caefe2386
Fixed
6d0f599db73b099aa724a12736369c4d4d92849d
Fixed
582d9ed999b004fb1d415ecbfa86d4d8df455269
Fixed
3c2fb1ca8086eb139b2a551358137525ae8e0d7a

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-56756.json"