cbcvebase.
CVE-2024-26997
published 2024-05-01

CVE-2024-26997: In the Linux kernel, the following vulnerability has been resolved: usb: dwc2: host: Fix dereference issue in DDMA completion flow. Fixed variable dereference…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.0th percentile
In the Linux kernel, the following vulnerability has been resolved: usb: dwc2: host: Fix dereference issue in DDMA completion flow. Fixed variable dereference issue in DDMA completion flow.

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.90-1 (bookworm)linux 6.1.90-1 (bookworm)
linuxlinux
linuxlinux>= 32d3f2f108ebcaf9bd9fc06095c776cb73add034 < 8aa5c28ac65cb5e7f1b9c0c3238c00b661dd2b8c8aa5c28ac65cb5e7f1b9c0c3238c00b661dd2b8c
linuxlinux>= 4.19.312 < 4.19.3134.19.313
linuxlinux>= 5.10.215 < 5.10.2165.10.216
linuxlinux>= 5.15.154 < 5.15.1575.15.157
linuxlinux>= 5.4.274 < 5.4.2755.4.275
linuxlinux>= 6.1.84 < 6.1.886.1.88
linuxlinux>= 6.6.24 < 6.6.296.6.29
linuxlinux>= 6.7.12 < 6.86.8
linuxlinux>= 6.8.3 < 6.8.86.8.8
linuxlinux>= 693bbbccd9c774adacaf03ae9fcbb33b66b1ffc4 < 75bf5e78b2a27cb1bca6fa826e3ab685015165e175bf5e78b2a27cb1bca6fa826e3ab685015165e1
linuxlinux>= 8b7c57ab6f6bc6bfee87e929cab6e6dac351606b < 55656b2afd5f1efcec4245f3e7e814c2a9ef53f655656b2afd5f1efcec4245f3e7e814c2a9ef53f6
linuxlinux>= 8d310e5d702c903a7ac95fb5dd248f046b39db00 < 8a139fa44870e84ac228b7b76423a49610e5ba9a8a139fa44870e84ac228b7b76423a49610e5ba9a
linuxlinux>= b258e42688501cadb1a6dd658d6f015df9f32d8f < eed04fa96c48790c1cce73c8a248e9d460b088f8eed04fa96c48790c1cce73c8a248e9d460b088f8
linuxlinux>= bc48eb1b53ce977d17d51caa574bd81064a117a2 < 9de10b59d16880a0a3ae2876c142fe54ce45d8169de10b59d16880a0a3ae2876c142fe54ce45d816
linuxlinux>= db4fa0c8e811676a7bfe8363a01e70ee601e75f7 < 26fde0ea40dda1b08fad3bc0a43f122f6dd8bddf26fde0ea40dda1b08fad3bc0a43f122f6dd8bddf
linuxlinux>= dca1dc1e99e09e7b8eaccb55d6aecb87d9cb8ecd < 257d313e37d66c3bcc87197fb5b8549129c45dfe257d313e37d66c3bcc87197fb5b8549129c45dfe
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.90-16.1.90-1

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.8MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu4.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.