PT-2024-9019 · Linux+7 · Linux Kernel+7

Published

2024-05-30

·

Updated

2025-09-29

·

CVE-2024-36926

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel versions prior to 6.6.37
Description: The vulnerability is related to a NULL pointer dereference in the powerpc/pseries/iommu component of the Linux kernel. This occurs when the partition firmware does not provide the ibm,dma-window property for a PE (Processing Element) at boot time, which can happen if the firmware has frozen the PE due to an error condition. As a result, the LPAR (Logical Partition) may panic during boot up with a NULL pointer dereference when configuring the PCI bus.
Technical details about exploitation include:
  • The pci dma bus setup pSeriesLP function is involved in the vulnerability.
  • The issue arises when the ibm,dma-window property is missing for a PE.
  • The vulnerability leads to a kernel NULL pointer dereference on read at address 0x000000c8.
Recommendations: To resolve the issue, update the Linux kernel to version 6.6.37 or later. As a temporary workaround, consider disabling the pci dma bus setup pSeriesLP function until a patch is available. Restrict access to the vulnerable powerpc/pseries/iommu component to minimize the risk of exploitation.

Exploit

Fix

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-11524
ALT-PU-2024-13979
ALT-PU-2024-14046
ALT-PU-2024-9127
AZL-42450
BDU:2024-10701
CVE-2024-36926
INFSA-2024_9315
MGASA-2024-0263
MGASA-2024-0266
OPENSUSE-SU-2024_2189-1
OPENSUSE-SU-2024_2947-1
RHSA-2024:9315
RHSA-2024_9315
SUSE-SU-2024:2008-1
SUSE-SU-2024:2011-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2189-1
SUSE-SU-2024:2190-1
SUSE-SU-2024:2571-1
SUSE-SU-2024:2894-1
SUSE-SU-2024:2896-1
SUSE-SU-2024:2929-1
SUSE-SU-2024:2947-1
SUSE-SU-2024:2973-1
SUSE-SU-2025:20008-1
SUSE-SU-2025:20028-1
USN-6949-1
USN-6949-2
USN-6952-1
USN-6952-2
USN-6955-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu