CVE-2024-53072: platform/x86/amd/pmc: Detect when STB is not available

Published Nov 19, 2024
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

platform/x86/amd/pmc: Detect when STB is not available

Loading the amdpmc module as:

amdpmc enablestb=1

...can result in the following messages in the kernel ring buffer:

amdpmc AMDI0009:00: SMU cmd failed. err: 0xff ioremap on RAM at 0x0000000000000000 - 0x0000000000ffffff WARNING: CPU: 10 PID: 2151 at arch/x86/mm/ioremap.c:217 ioremapcaller+0x2cd/0x340

Further debugging reveals that this occurs when the requests for S2DPHYSADDRLOW and S2DPHYSADDRHIGH return a value of 0, indicating that the STB is inaccessible. To prevent the ioremap warning and provide clarity to the user, handle the invalid address and display an error message.

Other sources

This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.

Launchpad

Affected Software

11 affected componentsFixes available
Linux Linux kernel>=5.18<6.1.117
Linux Linux kernel>=6.2<6.6.61
Linux Linux kernel>=6.7<6.11.8
Linux Linux kernel=6.12-rc1
Linux Linux kernel=6.12-rc2
Linux Linux kernel=6.12-rc3
Linux Linux kernel=6.12-rc4
Linux Linux kernel=6.12-rc5
Linux Linux kernel=6.12-rc6
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.22-16.12.25-1
debian/linux-6.1
6.1.129-1~deb11u1

Event History

Nov 19, 2024
CVE Published
via MITRE·05:22 PM
Data Sourced
via MITRE·05:22 PM
Description
Data Sourced
via Red Hat·06:03 PM
DescriptionSeverityAffected Software
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityAffected Software
Feb 24, 2025
Data Sourced
via Launchpad·12:45 AM
Description
Apr 29, 2025
Data Sourced
via Ubuntu·01:09 AM
RemedyDescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2024-53072?

CVE-2024-53072 is considered a medium-severity vulnerability in the Linux kernel.

2

How can I mitigate CVE-2024-53072?

To mitigate CVE-2024-53072, ensure that you are using an updated version of the Linux kernel that has addressed this vulnerability.

3

Which versions of the Linux kernel are affected by CVE-2024-53072?

CVE-2024-53072 affects Linux kernel versions from 5.18 to 6.1.117 and 6.2 to 6.6.61, as well as various release candidates of version 6.12.

4

What issue does CVE-2024-53072 address in the Linux kernel?

CVE-2024-53072 resolves a problem with the amd_pmc module where enabling STB can lead to kernel ring buffer log messages when STB is not available.

5

Is there a patch available for CVE-2024-53072?

Yes, there are patches available in newer versions of the Linux kernel that fix the issues described in CVE-2024-53072.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203