SB20240713119 - Input validation error in Linux kernel mips pci
Published: July 13, 2024 Updated: May 13, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Input validation error (CVE-ID: CVE-2024-40968)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the __cvmx_pcie_build_config_addr() function in arch/mips/pci/pcie-octeon.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/6bff05aaa32c2f7e1f6e68e890876642159db419
- https://git.kernel.org/stable/c/64845ac64819683ad5e51b668b2ed56ee3386aee
- https://git.kernel.org/stable/c/6c1b9fe148a4e03bbfa234267ebb89f35285814a
- https://git.kernel.org/stable/c/25998f5613159fe35920dbd484fcac7ea3ad0799
- https://git.kernel.org/stable/c/d996deb80398a90dd3c03590e68dad543da87d62
- https://git.kernel.org/stable/c/1c33fd17383f48f679186c54df78542106deeaa0
- https://git.kernel.org/stable/c/38d647d509543e9434b3cc470b914348be271fe9
- https://git.kernel.org/stable/c/29b83a64df3b42c88c0338696feb6fdcd7f1f3b7
- https://mirrors.edge.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.19.317
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.221
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.162
- https://mirrors.edge.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.279
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.96
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.10
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.6.36