cbcvebase.
CVE-2024-26927
published 2024-04-28

CVE-2024-26927: In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Add some bounds checking to firmware data Smatch complains about…

PriorityP340high8.4CVSS 3.1
AVLACLPRNUINSUCHIHAH
EPSS
0.29%
21.3th percentile
In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Add some bounds checking to firmware data Smatch complains about "head->full_size - head->header_size" can underflow. To some extent, we're always going to have to trust the firmware a bit. However, it's easy enough to add a check for negatives, and let's add a upper bounds check as well.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= d2458baa799fff377660d86323dd20a3f4deecb4 < d133d67e7e724102d1e53009c4f88afaaf3e167cd133d67e7e724102d1e53009c4f88afaaf3e167c
linuxlinux>= d2458baa799fff377660d86323dd20a3f4deecb4 < ced7df8b3c5c4751244cad79011e86cf1f809153ced7df8b3c5c4751244cad79011e86cf1f809153
linuxlinux>= d2458baa799fff377660d86323dd20a3f4deecb4 < 044e220667157fb9d59320341badec59cf45ba48044e220667157fb9d59320341badec59cf45ba48
linuxlinux>= d2458baa799fff377660d86323dd20a3f4deecb4 < 9eeb8e1231f6450c574c1db979122e171a1813ab9eeb8e1231f6450c574c1db979122e171a1813ab
linuxlinux>= d2458baa799fff377660d86323dd20a3f4deecb4 < 98f681b0f84cfc3a1d83287b77697679e039830698f681b0f84cfc3a1d83287b77697679e0398306
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 5.19 < 6.1.836.1.83
linuxlinux_kernel>= 6.2 < 6.6.236.6.23
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2

CVSS provenance

nvdv3.18.4HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv8.4HIGH
vendor_debian8.4HIGH
vendor_redhat8.4HIGH
vendor_ubuntu6.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.