CVE-2024-26702

In the Linux kernel, the following vulnerability has been resolved: iio: magnetometer: rm3100: add boundary check for the value read from RM3100_REG_TMRC Recently, we encounter kernel crash in function rm3100_common_probe caused by out of bound access of array rm3100_samp_rates (because of underlying hardware failures). Add boundary check to prevent out of bound access.
Configurations

No configuration.

History

21 Nov 2024, 09:02

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html -
References () https://git.kernel.org/stable/c/176256ff8abff29335ecff905a09fb49e8dcf513 - () https://git.kernel.org/stable/c/176256ff8abff29335ecff905a09fb49e8dcf513 -
References () https://git.kernel.org/stable/c/1d8c67e94e9e977603473a543d4f322cf2c4aa01 - () https://git.kernel.org/stable/c/1d8c67e94e9e977603473a543d4f322cf2c4aa01 -
References () https://git.kernel.org/stable/c/36a49290d7e6d554020057a409747a092b1d3b56 - () https://git.kernel.org/stable/c/36a49290d7e6d554020057a409747a092b1d3b56 -
References () https://git.kernel.org/stable/c/57d05dbbcd0b3dc0c252103b43012eef5d6430d1 - () https://git.kernel.org/stable/c/57d05dbbcd0b3dc0c252103b43012eef5d6430d1 -
References () https://git.kernel.org/stable/c/7200170e88e3ec54d9e9c63f07514c3cead11481 - () https://git.kernel.org/stable/c/7200170e88e3ec54d9e9c63f07514c3cead11481 -
References () https://git.kernel.org/stable/c/792595bab4925aa06532a14dd256db523eb4fa5e - () https://git.kernel.org/stable/c/792595bab4925aa06532a14dd256db523eb4fa5e -
References () https://git.kernel.org/stable/c/8d5838a473e8e6d812257c69745f5920e4924a60 - () https://git.kernel.org/stable/c/8d5838a473e8e6d812257c69745f5920e4924a60 -

05 Nov 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-125

05 Nov 2024, 10:15

Type Values Removed Values Added
References
  • {'url': 'https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}

25 Jun 2024, 22:15

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se resolvió la siguiente vulnerabilidad: iio: magnetómetro: rm3100: agregue verificación de los límites para el valor leído de RM3100_REG_TMRC Recientemente, encontramos una falla del kernel en la función rm3100_common_probe causada por el acceso fuera de los límites de la matriz rm3100_samp_rates (debido al hardware subyacente fallas). Agregue verificación de los límites para evitar el acceso fuera de los límites.
References
  • () https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html -

03 Apr 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-03 15:15

Updated : 2024-11-21 09:02


NVD link : CVE-2024-26702

Mitre link : CVE-2024-26702

CVE.ORG link : CVE-2024-26702


JSON object : View

Products Affected

No product.

CWE
CWE-125

Out-of-bounds Read