CVE-2024-2659
published 2024-04-15CVE-2024-2659: A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system commands…
PriorityP346high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
1.13%
62.8th percentile
A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system commands when performing a specific administrative function.
Affected
68 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| lenovo | nextscale_n1200_enclosure_firmware | < FHET62A-3.50 | FHET62A-3.50 |
| lenovo | thinkagile_2u4n_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_cp-cb-10_firmware | < TESM40B-1.27 | TESM40B-1.27 |
| lenovo | thinkagile_cp-cb-10e_firmware | < TESM40B-1.27 | TESM40B-1.27 |
| lenovo | thinkagile_hx1021_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx1321_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx1331_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx1521-r_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx2321_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx2331_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx3321_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx3331_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx3376_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx3521-g_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx3721_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx5521-c_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx5521_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx5531_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx630_v3_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx645_v3_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx650_v3_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx665_v3_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx7521_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx7531_firmware | < tesm40b-1.27 | tesm40b-1.27 |
| lenovo | thinkagile_hx7821_firmware | < tesm40b-1.27 | tesm40b-1.27 |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6rqw-3wpr-8qcj: A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system
ghsa_unreviewed·2024-04-15
CVE-2024-2659 [HIGH] CWE-78 GHSA-6rqw-3wpr-8qcj: A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system
A command injection vulnerability was identified in SMM/SMM2 and FPC that could allow an authenticated user with elevated privileges to execute system commands when performing a specific administrative function.
Red Hat
kernel: tty: add the option to have a tty reject a new ldisc
vendor_redhat·2024-07-12·CVSS 5.5
CVE-2024-40966 [MEDIUM] CWE-99 kernel: tty: add the option to have a tty reject a new ldisc
kernel: tty: add the option to have a tty reject a new ldisc
In the Linux kernel, the following vulnerability has been resolved:
tty: add the option to have a tty reject a new ldisc
... and use it to limit the virtual terminals to just N_TTY. They are
kind of special, and in particular, the "con_write()" routine violates
the "writes cannot sleep" rule that some ldiscs rely on.
This avoids the
BUG: sleeping function called from invalid context at kernel/printk/printk.c:2659
when N_GSM has been attached to a virtual console, and gsmld_write()
calls con_write() while holding a spinlock, and con_write() then tries
to get the console lock.
A vulnerability was found in the Linux kernel's TTY subsystem, where the option to reject a new ldisc was improperly implemented, which can lead to a situa
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-04-15
Published