cbcvebase.
CVE-2024-26969
published 2024-05-01

CVE-2024-26969: In the Linux kernel, the following vulnerability has been resolved: clk: qcom: gcc-ipq8074: fix terminating of frequency table arrays The frequency table…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.2th percentile
In the Linux kernel, the following vulnerability has been resolved: clk: qcom: gcc-ipq8074: fix terminating of frequency table arrays The frequency table arrays are supposed to be terminated with an empty element. Add such entry to the end of the arrays where it is missing in order to avoid possible out-of-bound access when the table is traversed by functions like qcom_find_freq() or qcom_find_freq_floor(). Only compile tested.

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < e117c6e2d1617520f5f7d7f6f6b395f01d8b5a27e117c6e2d1617520f5f7d7f6f6b395f01d8b5a27
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < 83fe1bbd9e259ad109827ccfbfc2488e0dea8e9483fe1bbd9e259ad109827ccfbfc2488e0dea8e94
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < 851cc19bdb02556fb13629b3e4fef6f2bdb038fe851cc19bdb02556fb13629b3e4fef6f2bdb038fe
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < 9de184d4e557d550fb0b7b833b676bda4f269e4f9de184d4e557d550fb0b7b833b676bda4f269e4f
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < dd92b159c506804ac57adf3742d9728298bb1255dd92b159c506804ac57adf3742d9728298bb1255
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < b6b31b4c67ea6bd9222e5b73b330554c57f2f90db6b31b4c67ea6bd9222e5b73b330554c57f2f90d
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < fc3ac2fcd0a7fad63eba1b359490a4b81720d0f9fc3ac2fcd0a7fad63eba1b359490a4b81720d0f9
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < be9e2752d823eca1d5af67014a1844a9176ff566be9e2752d823eca1d5af67014a1844a9176ff566
linuxlinux>= 9607f6224b3966652ce3f4e620c4694df190b64a < 1040ef5ed95d6fd2628bad387d78a61633e094291040ef5ed95d6fd2628bad387d78a61633e09429
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.4.0-189.2095.4.0-189.209
linuxlinux_kernel>= 0 < 5.15.0-116.1265.15.0-116.126
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 4.16 < 4.19.3124.19.312
linuxlinux_kernel>= 4.20 < 5.4.2745.4.274
linuxlinux_kernel>= 5.11 < 5.15.1545.15.154
linuxlinux_kernel>= 5.16 < 6.1.846.1.84
linuxlinux_kernel>= 5.5 < 5.10.2155.10.215
linuxlinux_kernel>= 6.2 < 6.6.246.6.24

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.