cbcvebase.
CVE-2024-24891
published 2024-04-15

CVE-2024-24891: Exposure of Sensitive Information to an Unauthorized Actor vulnerability in openEuler kernel on Linux allows Resource Leak Exposure. This vulnerability is…

PriorityP423medium6CVSS 3.1
AVLACLPRHUINSCCHINAN
EPSS
0.22%
13.1th percentile
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in openEuler kernel on Linux allows Resource Leak Exposure. This vulnerability is associated with program files https://gitee.Com/openeuler/kernel/blob/openEuler-1.0-LTS/drivers/staging/gmjstcm/tcm.C. This issue affects kernel: from 4.19.90-2109.1.0.0108 before 4.19.90-2403.4.0.0244.

Affected

2 ranges
VendorProductVersion rangeFixed in
debianlinux
openeulerkernel>= 4.19.90-2109.1.0.0108 < 4.19.90-2403.4.0.02444.19.90-2403.4.0.0244

CVSS provenance

nvdv3.16.0MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:N
osv6.0MEDIUM
vendor_debian6.0LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.