CVE-2024-56756
Published: Dec 29, 2024
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix freeing of the HMB descriptor table The HMB descriptor table is sized to the maximum number of descriptors that could be used for a given device, but __nvme_alloc_host_mem could break out of the loop earlier on memory allocation failure and end up using less descriptors than planned for, which leads to an incorrect size passed to dma_free_coherent. In practice this was not showing up because the number of descriptors tends to be low and the dma coherent allocator always allocates and frees at least a page.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected 87ad72a59a38d1df217cfd95bc222a2edfe5d399 - < ac22240540e0c5230d8c4138e3778420b712716aaffected 87ad72a59a38d1df217cfd95bc222a2edfe5d399 - < 452f9ddd12bebc04cef741e8ba3806bf0e1fd015affected 87ad72a59a38d1df217cfd95bc222a2edfe5d399 - < 869cf50b9c9d1059f5223f79ef68fc0bc6210095affected 87ad72a59a38d1df217cfd95bc222a2edfe5d399 - < fb96d5cfa97a7363245b3dd523f475b04296d87baffected 87ad72a59a38d1df217cfd95bc222a2edfe5d399 - < cee3bff51a35cab1c5d842d409a7b11caefe2386+3 more versions |
Linux | Linux | affected 4.13unaffected 0 - < 4.13unaffected 5.4.287 - <= 5.4.*unaffected 5.10.231 - <= 5.10.*unaffected 5.15.174 - <= 5.15.*+5 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now