CVE Database
/

CVE-2024-27007

Back to search

CVE-2024-27007

Published: May 1, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: userfaultfd: change src_folio after ensuring it's unpinned in UFFDIO_MOVE Commit d7a08838ab74 ("mm: userfaultfd: fix unexpected change to src_folio when UFFDIO_MOVE fails") moved the src_folio->{mapping, index} changing to after clearing the page-table and ensuring that it's not pinned. This avoids failure of swapout+migration and possibly memory corruption. However, the commit missed fixing it in the huge-page case.

VendorProductVersions

Linux

Linux

affected
adef440691bab824e39c1b17382322d195e1fab0 - < df5f6e683e7f21a15d8be6e7a0c7a46436963ebe
affected
adef440691bab824e39c1b17382322d195e1fab0 - < c0205eaf3af9f5db14d4b5ee4abacf4a583c3c50

Linux

Linux

affected
6.8
unaffected
0 - < 6.8
unaffected
6.8.8 - <= 6.8.*
unaffected
6.9 - <= *

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now