CVE-2024-27007
Published: May 1, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: userfaultfd: change src_folio after ensuring it's unpinned in UFFDIO_MOVE Commit d7a08838ab74 ("mm: userfaultfd: fix unexpected change to src_folio when UFFDIO_MOVE fails") moved the src_folio->{mapping, index} changing to after clearing the page-table and ensuring that it's not pinned. This avoids failure of swapout+migration and possibly memory corruption. However, the commit missed fixing it in the huge-page case.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected adef440691bab824e39c1b17382322d195e1fab0 - < df5f6e683e7f21a15d8be6e7a0c7a46436963ebeaffected adef440691bab824e39c1b17382322d195e1fab0 - < c0205eaf3af9f5db14d4b5ee4abacf4a583c3c50 |
Linux | Linux | affected 6.8unaffected 0 - < 6.8unaffected 6.8.8 - <= 6.8.*unaffected 6.9 - <= * |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now