PT-2024-26787 · Linux+6 · Linux Kernel+6
Published
2024-05-19
·
Updated
2026-05-26
·
CVE-2024-35931
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 5.15.0-92-generic
Description
The vulnerability is related to the Linux kernel's handling of PCI error slot resets during RAS recovery. The PCI error slot reset may be triggered after injecting UE to UMC multiple times, causing a system hang. The issue is caused by the
amdgpu ras do recovery function not properly handling the PCI error slot reset, leading to a general protection fault.Technical details about exploitation include:
- Function Names: The
amdgpu ras do recoveryfunction is vulnerable. - Vulnerable Parameters or Variables: The
pci statusvariable is involved in the vulnerability.
Recommendations
To resolve the issue, update the Linux kernel to version 5.15.0-92-generic or later. This update includes the fix for the
drm/amdgpu vulnerability, which skips the PCI error slot reset during RAS recovery.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Debian
Linuxmint
Linux Kernel
Red Hat
Suse
Ubuntu