CVE-2024-27408: dmaengine: dw-edma: eDMA: Add sync read before starting the DMA transfer in remote setup
Published May 17, 2024
·Updated
dmaengine: dw-edma: eDMA: Add sync read before starting the DMA transfer in remote setup
Affected Software
10 affected components
Linux Kernel
Linux Linux kernel>=5.3<6.6.21
Linux Linux kernel>=6.7<6.7.9
Linux Linux kernel=6.8-rc1
Linux Linux kernel=6.8-rc2
Linux Linux kernel=6.8-rc3
Linux Linux kernel=6.8-rc4
Linux Linux kernel=6.8-rc5
Linux Linux kernel=6.8-rc6
Microsoft cbl2 kernel 5.15.186.1-1
Event History
May 17, 2024
CVE Published
via MITRE·11:50 AM
Data Sourced
via MITRE·11:50 AM
DescriptionSeverity
Data Sourced
via NVD·12:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Sep 20, 2025
Data Sourced
via Microsoft·01:03 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:03 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2024-27408?
CVE-2024-27408 has been classified with a moderate severity level due to its impact on data integrity during DMA operations.
2
How do I fix CVE-2024-27408?
To fix CVE-2024-27408, update your Linux kernel to the latest version where this vulnerability has been patched.
3
What systems are affected by CVE-2024-27408?
CVE-2024-27408 affects systems running the Linux kernel with the eDMA controller.
4
What is the potential impact of CVE-2024-27408?
The potential impact of CVE-2024-27408 includes unauthorized data access and corruption due to improper synchronization in DMA transfers.
5
Is there a workaround for CVE-2024-27408?
Currently, there are no effective workarounds for CVE-2024-27408 other than applying the recommended kernel updates.