{"id":"DEBIAN-CVE-2024-26783","details":"In the Linux kernel, the following vulnerability has been resolved:  mm/vmscan: fix a bug calling wakeup_kswapd() with a wrong zone index  With numa balancing on, when a numa system is running where a numa node doesn't have its local memory so it has no managed zones, the following oops has been observed.  It's because wakeup_kswapd() is called with a wrong zone index, -1.  Fixed it by checking the index before calling wakeup_kswapd().  \u003e BUG: unable to handle page fault for address: 00000000000033f3 \u003e #PF: supervisor read access in kernel mode \u003e #PF: error_code(0x0000) - not-present page \u003e PGD 0 P4D 0 \u003e Oops: 0000 [#1] PREEMPT SMP NOPTI \u003e CPU: 2 PID: 895 Comm: masim Not tainted 6.6.0-dirty #255 \u003e Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS \u003e    rel-1.16.0-0-gd239552ce722-prebuilt.qemu.org 04/01/2014 \u003e RIP: 0010:wakeup_kswapd (./linux/mm/vmscan.c:7812) \u003e Code: (omitted) \u003e RSP: 0000:ffffc90004257d58 EFLAGS: 00010286 \u003e RAX: ffffffffffffffff RBX: ffff88883fff0480 RCX: 0000000000000003 \u003e RDX: 0000000000000000 RSI: 0000000000000000 RDI: ffff88883fff0480 \u003e RBP: ffffffffffffffff R08: ff0003ffffffffff R09: ffffffffffffffff \u003e R10: ffff888106c95540 R11: 0000000055555554 R12: 0000000000000003 \u003e R13: 0000000000000000 R14: 0000000000000000 R15: ffff88883fff0940 \u003e FS:  00007fc4b8124740(0000) GS:ffff888827c00000(0000) knlGS:0000000000000000 \u003e CS:  0010 DS: 0000 ES: 0000 CR0: 0000000080050033 \u003e CR2: 00000000000033f3 CR3: 000000026cc08004 CR4: 0000000000770ee0 \u003e DR0: 0000000000000000 DR1: 0000000000000000 DR2: 0000000000000000 \u003e DR3: 0000000000000000 DR6: 00000000fffe0ff0 DR7: 0000000000000400 \u003e PKRU: 55555554 \u003e Call Trace: \u003e  \u003cTASK\u003e \u003e ? __die \u003e ? page_fault_oops \u003e ? __pte_offset_map_lock \u003e ? exc_page_fault \u003e ? asm_exc_page_fault \u003e ? wakeup_kswapd \u003e migrate_misplaced_page \u003e __handle_mm_fault \u003e handle_mm_fault \u003e do_user_addr_fault \u003e exc_page_fault \u003e asm_exc_page_fault \u003e RIP: 0033:0x55b897ba0808 \u003e Code: (omitted) \u003e RSP: 002b:00007ffeefa821a0 EFLAGS: 00010287 \u003e RAX: 000055b89983acd0 RBX: 00007ffeefa823f8 RCX: 000055b89983acd0 \u003e RDX: 00007fc2f8122010 RSI: 0000000000020000 RDI: 000055b89983acd0 \u003e RBP: 00007ffeefa821a0 R08: 0000000000000037 R09: 0000000000000075 \u003e R10: 0000000000000000 R11: 0000000000000202 R12: 0000000000000000 \u003e R13: 00007ffeefa82410 R14: 000055b897ba5dd8 R15: 00007fc4b8340000 \u003e  \u003c/TASK\u003e","modified":"2026-09-15T09:03:05.388718844Z","published":"2024-04-04T09:15:08.077Z","upstream":["CVE-2024-26783"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2024-26783"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:12","purl":"pkg:deb/debian/linux?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.1.140-1"}]}],"versions":["6.1.106-1","6.1.106-2","6.1.106-3","6.1.112-1","6.1.115-1","6.1.119-1","6.1.123-1","6.1.124-1","6.1.128-1","6.1.129-1","6.1.133-1","6.1.135-1","6.1.137-1","6.1.139-1","6.1.27-1","6.1.37-1","6.1.38-1","6.1.38-2","6.1.38-2~bpo11+1","6.1.38-3","6.1.38-4","6.1.38-4~bpo11+1","6.1.52-1","6.1.55-1","6.1.55-1~bpo11+1","6.1.64-1","6.1.66-1","6.1.67-1","6.1.69-1","6.1.69-1~bpo11+1","6.1.76-1","6.1.76-1~bpo11+1","6.1.82-1","6.1.85-1","6.1.90-1","6.1.90-1~bpo11+1","6.1.94-1","6.1.94-1~bpo11+1","6.1.98-1","6.1.99-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-26783.json"}},{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.7.9-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-26783.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.7.9-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2024-26783.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}