mtd: rawnand: lpc32xx_slc: fail DMA transfer on completion timeout
21Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 8.8epss 0.2%
probabilidad de explotación
0.2%top 94% de las CVE
explotación observada
noninguna fuente lo reporta
In the Linux kernel, the following vulnerability has been resolved:
mtd: rawnand: lpc32xx_slc: fail DMA transfer on completion timeout
lpc32xx_xmit_dma() waits for the DMA completion callback but ignores
wait_for_completion_timeout(). A timed out DMA transfer is therefore
unmapped and reported as successful to the NAND read/write path.
Return -ETIMEDOUT when the completion wait expires. Terminate the DMA
channel before unmapping the scatterlist so the timed out transfer cannot
continue to access the buffer after the error is returned.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Productos afectados
Linux · LinuxReferencias
https://git.kernel.org/stable/c/17a8ce84964f243c8f89dc7353ac7e8d3137bc74https://git.kernel.org/stable/c/307e4f4c1d4e1575b3495ecc6e41aa2adc40f491https://git.kernel.org/stable/c/623c4d8e740debb4af28981e3d4e209f9d0260a4https://git.kernel.org/stable/c/8f5c3ee53a5dc1a0f7cfd780485f2c8b5d17f91dhttps://git.kernel.org/stable/c/bd4a622786f92e1f183f7557ab89dd32891cef60https://git.kernel.org/stable/c/c367af37ce7238c96c6071337149099467160746https://git.kernel.org/stable/c/cb2031f8b226efbd13735c07b075e5f14ec11f6dhttps://git.kernel.org/stable/c/cf7258f57d18026b8f77c0e80ff1805e9caf7250