CVE-2024-26730
published 2024-04-03CVE-2024-26730: In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775) Fix access to temperature configuration registers The number of…
PriorityP430high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.24%
15.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775) Fix access to temperature configuration registers
The number of temperature configuration registers does
not always match the total number of temperature registers.
This can result in access errors reported if KASAN is enabled.
BUG: KASAN: global-out-of-bounds in nct6775_probe+0x5654/0x6fe9 nct6775_core
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.7.7-1 (forky) | linux 6.7.7-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= b7f1f7b2523a6a4382f12fe953380b847b80e09d < f006c45a3ea424f8f6c8e4b9283bc245ce2a4d0f | f006c45a3ea424f8f6c8e4b9283bc245ce2a4d0f |
| linux | linux | >= b7f1f7b2523a6a4382f12fe953380b847b80e09d < c196387820c9214c5ceaff56d77303c82514b8b1 | c196387820c9214c5ceaff56d77303c82514b8b1 |
| linux | linux | >= b7f1f7b2523a6a4382f12fe953380b847b80e09d < d56e460e19ea8382f813eb489730248ec8d7eb73 | d56e460e19ea8382f813eb489730248ec8d7eb73 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.7.7-1 | 6.7.7-1 |
| linux | linux_kernel | >= 0 < 6.7.7-1 | 6.7.7-1 |
| linux | linux_kernel | >= 6.6 < 6.6.19 | 6.6.19 |
| linux | linux_kernel | >= 6.7 < 6.7.7 | 6.7.7 |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.0HIGH
vendor_debian7.0LOW
vendor_redhat7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2024-26730: In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775) Fix access to temperature configuration registers The number of t
osv·2024-04-03·CVSS 7.0
CVE-2024-26730 [HIGH] CVE-2024-26730: In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775) Fix access to temperature configuration registers The number of t
In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775) Fix access to temperature configuration registers The number of temperature configuration registers does not always match the total number of temperature registers. This can result in access errors reported if KASAN is enabled. BUG: KASAN: global-out-of-bounds in nct6775_probe+0x5654/0x6fe9 nct6775_core
GHSA
GHSA-q4mr-gm7x-h58f: In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775) Fix access to temperature configuration registers
The number of
ghsa_unreviewed·2024-04-03
CVE-2024-26730 [HIGH] CWE-787 GHSA-q4mr-gm7x-h58f: In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775) Fix access to temperature configuration registers
The number of
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775) Fix access to temperature configuration registers
The number of temperature configuration registers does
not always match the total number of temperature registers.
This can result in access errors reported if KASAN is enabled.
BUG: KASAN: global-out-of-bounds in nct6775_probe+0x5654/0x6fe9 nct6775_core
Red Hat
kernel: hwmon: (nct6775) Fix access to temperature configuration registers
vendor_redhat·2024-04-03·CVSS 7.0
CVE-2024-26730 [HIGH] CWE-125 kernel: hwmon: (nct6775) Fix access to temperature configuration registers
kernel: hwmon: (nct6775) Fix access to temperature configuration registers
In the Linux kernel, the following vulnerability has been resolved:
hwmon: (nct6775) Fix access to temperature configuration registers
The number of temperature configuration registers does
not always match the total number of temperature registers.
This can result in access errors reported if KASAN is enabled.
BUG: KASAN: global-out-of-bounds in nct6775_probe+0x5654/0x6fe9 nct6775_core
A vulnerability was found in the Linux kernel. This issue involves mismatches between the number of temperature configuration registers and the total number of temperature registers that are accessed. This issue could lead to out-of-bounds memory access errors, causing memory corruption or crashes.
Statement: Red Hat Enterprise Li
Debian
CVE-2024-26730: linux - In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct...
vendor_debian·2024·CVSS 7.0
CVE-2024-26730 [HIGH] CVE-2024-26730: linux - In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct...
In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775) Fix access to temperature configuration registers The number of temperature configuration registers does not always match the total number of temperature registers. This can result in access errors reported if KASAN is enabled. BUG: KASAN: global-out-of-bounds in nct6775_probe+0x5654/0x6fe9 nct6775_core
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.7.7-1)
sid: resolved (fixed in 6.7.7-1)
trixie: resolved (fixed in 6.7.7-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/c196387820c9214c5ceaff56d77303c82514b8b1https://git.kernel.org/stable/c/d56e460e19ea8382f813eb489730248ec8d7eb73https://git.kernel.org/stable/c/f006c45a3ea424f8f6c8e4b9283bc245ce2a4d0fhttps://git.kernel.org/stable/c/c196387820c9214c5ceaff56d77303c82514b8b1https://git.kernel.org/stable/c/d56e460e19ea8382f813eb489730248ec8d7eb73https://git.kernel.org/stable/c/f006c45a3ea424f8f6c8e4b9283bc245ce2a4d0f
2024-04-03
Published