CVE-2024-43856: dma: fix call order in dmam_free_coherent
dma: fix call order in dmamfreecoherent
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/linuxto a version that resolves this vulnerability.Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.25-1Fixed in 6.12.27-1 - Upgrade
Upgrade
debian/linux-6.1to a version that resolves this vulnerability.Fixed in 6.1.129-1~deb11u1 - Upgrade
Upgrade
Linux kernel dma: fix call order in dmam_free_coherentto a version that resolves this vulnerability.Patch b9145fe6-0f72-4325-ac2f-a84d81075b03
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43856?
The severity of CVE-2024-43856 is classified as moderate.
How do I fix CVE-2024-43856?
To fix CVE-2024-43856, update your Linux kernel to the latest patched version available in your distribution.
Which versions of the Linux kernel are affected by CVE-2024-43856?
CVE-2024-43856 affects Linux kernel versions between 2.6.21 and 4.19.320, 4.20 to 5.4.282, 5.5 to 5.10.224, 5.11 to 5.15.165, 5.16 to 6.1.103, 6.2 to 6.6.44, and 6.7 to 6.10.3.
Is there a specific kernel version to upgrade to for CVE-2024-43856?
Users should upgrade to kernel version 5.10.226-1 or 6.1.123-1 or newer to mitigate CVE-2024-43856.
What impact does CVE-2024-43856 have on system security?
CVE-2024-43856 could potentially allow misuse of freed memory, leading to system instability or arbitrary code execution.