PT-2024-35593 · Linux+7 · Linux Kernel+7

Aurelien Jarno

+1

·

Published

2024-11-10

·

Updated

2025-10-03

·

CVE-2024-53127

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.65
Description The issue is related to a commit in the Linux kernel that increased the max req size, even for 4K pages, causing various problems. These issues include panic booting the kernel/rootfs from an SD card on Rockchip RK3566 and StarFive JH7100, as well as "swiotlb buffer is full" and data corruption on StarFive JH7110. The commit in question is 8396c793ffdf, which attempted to fix IDMAC operation with pages bigger than 4K but introduced these new issues. At this stage, no fix has been found, so the change has been reverted.
Recommendations For Linux kernel versions prior to 6.6.65, update to version 6.6.65 or later to resolve the issue. As a temporary workaround, consider reverting the commit 8396c793ffdf to prevent the issues caused by the increased max req size. Restrict access to SD cards on affected devices, such as Rockchip RK3566 and StarFive JH7100, to minimize the risk of panic booting or data corruption. Avoid using the mmc: dw mmc module until the issue is resolved.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2024-16040
ALT-PU-2024-17888
ALT-PU-2025-12647
AZL-54120
BDU:2025-03322
CVE-2024-53127
DLA-4008-1
DLA-4075-1
MGASA-2024-0392
MGASA-2024-0393
OESA-2025-1032
OESA-2025-1036
OPENSUSE-SU-2025_0117-1
OPENSUSE-SU-2025_0153-1
OPENSUSE-SU-2025_0154-1
OPENSUSE-SU-2025_0556-1
OPENSUSE-SU-2025_0577-1
SUSE-SU-2025:0117-1
SUSE-SU-2025:0153-1
SUSE-SU-2025:0154-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0556-1
SUSE-SU-2025:0577-1
SUSE-SU-2025:0577-2
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0577-1
SUSE-SU-2025_0577-2
USN-7276-1
USN-7277-1
USN-7310-1
USN-7387-1
USN-7387-2
USN-7387-3
USN-7388-1
USN-7389-1
USN-7390-1
USN-7391-1
USN-7392-1
USN-7392-2
USN-7392-3
USN-7392-4
USN-7393-1
USN-7401-1
USN-7407-1
USN-7413-1
USN-7421-1
USN-7449-1
USN-7449-2
USN-7450-1
USN-7451-1
USN-7452-1
USN-7453-1
USN-7458-1
USN-7459-1
USN-7459-2
USN-7463-1
USN-7468-1
USN-7523-1
USN-7524-1
USN-7539-1
USN-7540-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu