Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2024-57804— scsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于SCSI mpi3mr驱动在快速启用/禁用PHY时,可能导致配置页面损坏。

CVSS 7.3 · High EPSS 0.18% · P8

Possible ATT&CK Techniques 1 AI

T1562.002

Affected Version Matrix 6

VendorProduct Version RangeStatus
Linux Linux 32d457d5a2af9bf5ddbe28297eabf1fc93451665< 869fdc6f0606060301aef648231e186c7c542f5a affected
32d457d5a2af9bf5ddbe28297eabf1fc93451665< 711201a8b8334a397440ac0b859df0054e174bc9 affected
6.1 affected
< 6.1 unaffected
6.12.8≤ 6.12.* unaffected
6.13≤ * unaffected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2024-57804

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
scsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: scsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs The driver, through the SAS transport, exposes a sysfs interface to enable/disable PHYs in a controller/expander setup. When multiple PHYs are disabled and enabled in rapid succession, the persistent and current config pages related to SAS IO unit/SAS Expander pages could get corrupted. Use separate memory for each config request.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于SCSI mpi3mr驱动在快速启用/禁用PHY时,可能导致配置页面损坏。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 32d457d5a2af9bf5ddbe28297eabf1fc93451665 ~ 869fdc6f0606060301aef648231e186c7c542f5a -
Linux Linux 6.1 -

II. Public POCs for CVE-2024-57804

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-57804

登录查看更多情报信息。

Patches & Fixes for CVE-2024-57804 (2)

Same Patch Batch · Linux · 2025-01-11 · 67 CVEs total

CVE-2024-47408 9.8 CRITICAL net/smc: check smcd_v2_ext_offset when receiving proposal msg
CVE-2024-49568 9.8 CRITICAL net/smc: check v2_ext_offset/eid_cnt/ism_gid_cnt when receiving proposal msg
CVE-2024-57843 9.8 CRITICAL virtio-net: fix overflow inside virtnet_rq_alloc
CVE-2024-57793 9.3 CRITICAL virt: tdx-guest: Just leak decrypted memory on unrecoverable errors
CVE-2024-49571 9.1 CRITICAL net/smc: check iparea_offset and ipv6_prefixes_cnt when receiving proposal msg
CVE-2024-55639 8.4 HIGH net: renesas: rswitch: avoid use-after-put for a device tree node
CVE-2024-41149 7.8 HIGH block: avoid to reuse `hctx` not removed from cpuhp callback list
CVE-2024-52319 7.8 HIGH mm: use aligned address in clear_gigantic_page()
CVE-2024-47794 7.8 HIGH bpf: Prevent tailcall infinite loop caused by freplace
CVE-2024-57875 7.8 HIGH block: RCU protect disk->conv_zones_bitmap
CVE-2024-57850 7.8 HIGH jffs2: Prevent rtime decompress memory corruption
CVE-2024-57849 7.8 HIGH s390/cpum_sf: Handle CPU hotplug remove during sampling
CVE-2024-51729 7.8 HIGH mm: use aligned address in copy_user_gigantic_page()
CVE-2024-49569 7.5 HIGH nvme-rdma: unquiesce admin_q before destroy it
CVE-2024-57791 7.5 HIGH net/smc: check return value of sock_recvmsg when draining clc data
CVE-2024-56788 7.5 HIGH net: ethernet: oa_tc6: fix tx skb race condition between reference pointers
CVE-2024-57792 7.3 HIGH power: supply: gpio-charger: Fix set charge current limits
CVE-2024-56368 7.1 HIGH ring-buffer: Fix overflow in __rb_map_vma
CVE-2024-49573 7.0 HIGH sched/fair: Fix NEXT_BUDDY
CVE-2024-56369 drm/modes: Avoid divide by zero harder in drm_mode_vrefresh()

Showing top 20 of 67 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2024-57804

No comments yet


Leave a comment