CVE-2024-40963: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: mips: bmips: BCM6358: make sure CBR is correctly set It was discovered that some device have CBR address set to 0 causing kernel panic when arch_sync_dma_for_cpu_all is called. This was notice in situation where the system is booted from TP1 and BMIPS_GET_CBR() returns 0 instead of a valid address and !!(read_c0_brcm_cmt_local() & (1 << 31)); not failing. The current check whether RAC flush should be disabled or not are not enough hence lets check if CBR is a valid address or not.

Affected products

  • Linux Linux Kernel: from 5.4.240, before 5.4.279 (fixed in 5.4.279); from 5.10.177, before 5.10.221 (fixed in 5.10.221); from 5.15.106, before 5.15.162 (fixed in 5.15.162); from 6.1.23, before 6.1.96 (fixed in 6.1.96); from 6.2.10, before 6.3 (fixed in 6.3); from 6.3.1, before 6.6.36 (fixed in 6.6.36); …

Published 2024-07-12. Last modified 2026-06-17.