Answer in brief
CVE-2024-50096 records a Unknown severity vulnerability in nouveau/dmem: Fix vulnerability in migrate_to_ram upon copy error. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-50096 records a Unknown severity vulnerability in nouveau/dmem: Fix vulnerability in migrate_to_ram upon copy error. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <fd9bb7e996bab9b9049fffe3f3d3b50dee191d27 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <73f75d2b5aee5a735cf64b8ab4543d5c20dbbdd9 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <8c3de9282dde21ce3c1bf1bde3166a4510547aa9 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <614bfb2050982d23d53d0d51c4079dba0437c883 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <697e3ddcf1f8b68bd531fc34eead27c000bdf3e1 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <ab4d113b6718b076046018292f821d5aa4b844f8 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <835745a377a4519decd1a36d6b926e369b3033e2 | fd9bb7e996bab9b9049fffe3f3d3b50dee191d27, 73f75d2b5aee5a735cf64b8ab4543d5c20dbbdd9, 8c3de9282dde21ce3c1bf1bde3166a4510547aa9, 614bfb2050982d23d53d0d51c4079dba0437c883, 697e3ddcf1f8b68bd531fc34eead27c000bdf3e1, ab4d113b6718b076046018292f821d5aa4b844f8, 835745a377a4519decd1a36d6b926e369b3033e2 |
| Linux/Linuxgeneric | 5.1 | Not reported |
Published upstream
Nov 5, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: nouveau/dmem: Fix vulnerability in migrate_to_ram upon copy error The `nouveau_dmem_copy_one` function ensures that the copy push command is sent to the device firmware but does not track whether it was executed successfully. In the case of a copy error (e.g., firmware or hardware failure), the copy push command will be sent via the firmware channel, and `nouveau_dmem_copy_one` will likely report success, leading to the `migrate_to_ram` function returning a dirty HIGH_USER page to the user. This can result in a security vulnerability, as a HIGH_USER page that may contain sensitive or corrupted data could be returned to the user. To prevent this vulnerability, we allocate a zero page. Thus, in case of an error, a non-dirty (zero) page will be returned to the user.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <fd9bb7e996bab9b9049fffe3f3d3b50dee191d27 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <73f75d2b5aee5a735cf64b8ab4543d5c20dbbdd9 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <8c3de9282dde21ce3c1bf1bde3166a4510547aa9 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <614bfb2050982d23d53d0d51c4079dba0437c883 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <697e3ddcf1f8b68bd531fc34eead27c000bdf3e1 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <ab4d113b6718b076046018292f821d5aa4b844f8 || >=5be73b690875f7eb2d2defb54ccd7f2f12074984 <835745a377a4519decd1a36d6b926e369b3033e2 | fd9bb7e996bab9b9049fffe3f3d3b50dee191d27, 73f75d2b5aee5a735cf64b8ab4543d5c20dbbdd9, 8c3de9282dde21ce3c1bf1bde3166a4510547aa9, 614bfb2050982d23d53d0d51c4079dba0437c883, 697e3ddcf1f8b68bd531fc34eead27c000bdf3e1, ab4d113b6718b076046018292f821d5aa4b844f8, 835745a377a4519decd1a36d6b926e369b3033e2 |
| Linux/Linuxgeneric | 5.1 | Not reported |
Published upstream
Nov 5, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: nouveau/dmem: Fix vulnerability in migrate_to_ram upon copy error The `nouveau_dmem_copy_one` function ensures that the copy push command is sent to the device firmware but does not track whether it was executed successfully. In the case of a copy error (e.g., firmware or hardware failure), the copy push command will be sent via the firmware channel, and `nouveau_dmem_copy_one` will likely report success, leading to the `migrate_to_ram` function returning a dirty HIGH_USER page to the user. This can result in a security vulnerability, as a HIGH_USER page that may contain sensitive or corrupted data could be returned to the user. To prevent this vulnerability, we allocate a zero page. Thus, in case of an error, a non-dirty (zero) page will be returned to the user.
Quoted source text, attributed separately from HOL analysis.