PT-2024-37024 · Linux+5 · Linux Kernel+5

Jann Horn

·

Published

2024-12-11

·

Updated

2026-05-26

·

CVE-2024-56712

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory leak issue has been resolved in the Linux kernel's udmabuf error handling. The problem occurs when dma buf fd() fails due to a full FD table in export udmabuf(), resulting in a dma buf being left in memory with a dangling pointer. Although this does not seem to lead to anything bad except a memory leak, it has been fixed by moving the dma buf fd() call out of export udmabuf() to allow for different error handling. The memory leak seems to have existed since the introduction of udmabuf.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2025-1256
ALT-PU-2025-12647
ALT-PU-2025-1925
ALT-PU-2025-3483
AZL-54768
AZL-54896
BDU:2025-15316
CVE-2024-56712
ECHO-2DE2-B5B7-4F74
OPENSUSE-SU-2025_0428-1
OPENSUSE-SU-2025_0499-1
OPENSUSE-SU-2025_0557-1
SUSE-SU-2025:0289-1
SUSE-SU-2025:0428-1
SUSE-SU-2025:0499-1
SUSE-SU-2025:0557-1
SUSE-SU-2025:20165-1
SUSE-SU-2025:20166-1
SUSE-SU-2025:20248-1
SUSE-SU-2025:20249-1
SUSE-SU-2025_0428-1
SUSE-SU-2025_0499-1
SUSE-SU-2025_0557-1
USN-7379-1
USN-7379-2
USN-7380-1
USN-7381-1
USN-7382-1

Affected Products

Alt Linux
Debian
Linuxmint
Linux Kernel
Suse
Ubuntu