CVE-2024-26664 — Out-of-bounds Write in Linux
Severity
7.1HIGHNVD
OSV7.0OSV6.5OSV5.5
EPSS
0.0%
top 98.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 2
Latest updateAug 14
Description
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (coretemp) Fix out-of-bounds memory access
Fix a bug that pdata->cpu_map[] is set before out-of-bounds check.
The problem might be triggered on systems with more than 128 cores per
package.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2
Affected Packages5 packages
▶CVEListV5linux/linux4f9dcadc55c21b39b072bb0882362c7edc4340bc — 93f0f4e846fcb682c3ec436e3b2e30e5a3a8ee6a+9
Also affects: Debian Linux 10.0
Patches
🔴Vulnerability Details
14OSV▶
linux-aws-6.5, linux-lowlatency-hwe-6.5, linux-oracle-6.5, linux-starfive-6.5 vulnerabilities↗2024-07-19