CVE-2024-56719: net: stmmac: fix TSO DMA API usage causing oops

Published Dec 29, 2024
·
Updated

In the Linux kernel, the following vulnerability has been resolved:

net: stmmac: fix TSO DMA API usage causing oops

Commit 66600fac7a98 ("net: stmmac: TSO: Fix unbalanced DMA map/unmap for non-paged SKB data") moved the assignment of txskbuffdma[]'s members to be later in stmmactsoxmit().

The buf (dma cookie) and len stored in this structure are passed to dmaunmapsingle() by stmmactxclean(). The DMA API requires that the dma cookie passed to dmaunmapsingle() is the same as the value returned from dmamapsingle(). However, by moving the assignment later, this is not the case when priv->dmacap.addr64 > 32 as "des" is offset by protohdrlen.

This causes problems such as:

dwc-eth-dwmac 2490000.ethernet eth0: Tx DMA map failed

and with DMAAPIDEBUG enabled:

DMA-API: dwc-eth-dwmac 2490000.ethernet: device driver tries to +free DMA memory it has not allocated [device address=0x000000ffffcf65c0] [size=66 bytes]

Fix this by maintaining "des" as the original DMA cookie, and use tsodes to pass the offset DMA cookie to stmmactsoallocator().

Full details of the crashes can be found at: https://lore.kernel.org/all/d8112193-0386-4e14-b516-37c2d838171a@nvidia.com/ https://lore.kernel.org/all/klkzp5yn5kq5efgtrow6wbvnc46bcqfxs65nz3qy77ujr5turc@bwwhelz2l4dw/

Other sources

This CVE was automatically created from a reference found in an email or other text. If you are reading this, then this CVE entry is probably erroneous, since this text should be replaced by the official CVE description automatically.

Launchpad

Affected Software

9 affected componentsFixes available
Linux Linux kernel>=5.15.171<5.16
Linux Linux kernel>=6.1.116<6.2
Linux Linux kernel>=6.6.60<6.6.68
Linux Linux kernel>=6.11.7<6.12.7
Linux Linux kernel=6.13-rc1
Linux Linux kernel=6.13-rc2
debian/linux<=6.1.129-1, <=6.1.135-1
5.10.223-15.10.234-16.12.27-1
Microsoft azl3 kernel 6.6.76.1-1<6.6.76.1-1
6.6.76.1-1
Microsoft azl3 kernel 6.6.64.2-9<6.6.76.1-1
6.6.76.1-1

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Upgrade

    Upgrade debian/linux to a version that resolves this vulnerability.

    Fixed in 5.10.223-1Fixed in 5.10.234-1Fixed in 6.12.27-1
  2. Upgrade

    Upgrade to a fixed release to a version that resolves this vulnerability.

    Fixed in 6.6.76.1-1
  3. Upgrade

    Upgrade Linux kernel net: stmmac to a version that resolves this vulnerability.

    Fixed in 66600fac7a98Patch 66600fac7a98
  4. Configuration

    In the stmmac TSO implementation, ensure that the DMA cookie passed to dma_unmap_single() by stmmac_tx_clean() exactly matches the value returned from dma_map_single(); maintain "des" as the original DMA cookie and use "tso_des" to pass the offset DMA cookie to stmmac_tso_allocator() (this addresses the issue introduced when tx_skbuff_dma[] members were moved later in stmmac_tso_xmit()).

    stmmac (TSO path) DMA cookie handling (des/tso_des) = Maintain "des" as the original DMA cookie from dma_map_single() and pass the offset DMA cookie via "tso_des" to stmmac_tso_allocator()

Event History

Dec 29, 2024
CVE Published
via MITRE·08:48 AM
Data Sourced
via MITRE·08:48 AM
DescriptionSeverity
Data Sourced
via NVD·09:15 AM
RemedyDescriptionSeverityAffected Software
Mar 13, 2025
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
Affected Software
Updated
via Microsoft·07:00 AM
SeverityAffected Software
Updated
via Microsoft·07:00 AM
Description
Mar 27, 2025
Data Sourced
via Launchpad·06:47 PM
Description
May 6, 2025
Data Sourced
via Ubuntu·06:56 PM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2024-56719?

CVE-2024-56719 is classified as a moderate severity vulnerability in the Linux kernel.

2

How do I fix CVE-2024-56719?

To fix CVE-2024-56719, update your Linux kernel to a version that has addressed this vulnerability.

3

What software versions are affected by CVE-2024-56719?

CVE-2024-56719 affects various versions of the Linux kernel ranging from 5.15.171 to 6.12.7, including specific release candidates.

4

What type of vulnerability is CVE-2024-56719?

CVE-2024-56719 involves an issue with the TSO DMA API usage in the Linux kernel, leading to potential system instability.

5

Is there a known exploit for CVE-2024-56719?

As of now, there are no publicly known exploits specifically targeting CVE-2024-56719.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203