CVE-2024-53148: comedi: Flush partial mappings in error case

Published Dec 24, 2024
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

comedi: Flush partial mappings in error case

If some remappfnrange() calls succeeded before one failed, we still have buffer pages mapped into the userspace page tables when we drop the buffer reference with comedibufmapput(bm). The userspace mappings are only cleaned up later in the mmap error path.

Fix it by explicitly flushing all mappings in our VMA on the error path.

See commit 79a61cc3fc04 ("mm: avoid leaving partial pfn mappings around in error case").

Other sources

This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.

Launchpad

Affected Software

10 affected componentsFixes available
Linux Linux kernel
debian/linux<=5.10.223-1
5.10.234-16.1.129-16.1.135-16.12.22-16.12.25-1
debian/linux-6.1
6.1.129-1~deb11u1
Linux Linux kernel>=2.6.29<5.4.287
Linux Linux kernel>=5.5<5.10.231
Linux Linux kernel>=5.11<5.15.174
Linux Linux kernel>=5.16<6.1.120
Linux Linux kernel>=6.2<6.6.64
Linux Linux kernel>=6.7<6.11.11
Linux Linux kernel>=6.12<6.12.2

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade debian/linux to a version that resolves this vulnerability.

    Fixed in 5.10.234-1Fixed in 6.1.129-1Fixed in 6.1.135-1Fixed in 6.12.22-1Fixed in 6.12.25-1
  2. Upgrade

    Upgrade debian/linux-6.1 to a version that resolves this vulnerability.

    Fixed in 6.1.129-1~deb11u1
  3. Upgrade

    Upgrade Linux kernel to a version that resolves this vulnerability.

    Patch 79a61cc3fc04
  4. Operational

    In comedi, flush partial/partial PFN mappings on the remap_pfn_range() error path so that userspace buffer pages are not left mapped after dropping the buffer reference with comedi_buf_map_put(bm); this prevents relying on later cleanup in the mmap error path.

Event History

Dec 24, 2024
CVE Published
via MITRE·11:28 AM
Data Sourced
via MITRE·11:28 AM
DescriptionSeverity
Data Sourced
via NVD·12:15 PM
Description
Data Sourced
via NVD·12:15 PM
RemedySeverityAffected Software
Mar 24, 2025
Data Sourced
via Launchpad·01:02 AM
Description
May 3, 2025
Data Sourced
via Ubuntu·01:12 AM
RemedyDescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2024-53148?

CVE-2024-53148 has a moderate severity rating due to the potential for userspace memory access issues.

2

How do I fix CVE-2024-53148?

To resolve CVE-2024-53148, update your Linux kernel to the latest patched version provided by your distribution.

3

What systems are affected by CVE-2024-53148?

CVE-2024-53148 affects various versions of the Linux kernel used in many Linux distributions.

4

What are the potential impacts of CVE-2024-53148?

The potential impacts of CVE-2024-53148 include unauthorized access to userspace memory by an attacker.

5

Is there a workaround for CVE-2024-53148?

Currently, there are no officially recommended workarounds for CVE-2024-53148; applying the patch is the best mitigation.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203