cbcvebase.
CVE-2024-27047
published 2024-05-01

CVE-2024-27047: In the Linux kernel, the following vulnerability has been resolved: net: phy: fix phy_get_internal_delay accessing an empty array The phy_get_internal_delay…

PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.28%
20.4th percentile
In the Linux kernel, the following vulnerability has been resolved: net: phy: fix phy_get_internal_delay accessing an empty array The phy_get_internal_delay function could try to access to an empty array in the case that the driver is calling phy_get_internal_delay without defining delay_values and rx-internal-delay-ps or tx-internal-delay-ps is defined to 0 in the device-tree. This will lead to "unable to handle kernel NULL pointer dereference at virtual address 0". To avoid this kernel oops, the test should be delay >= 0. As there is already delay < 0 test just before, the test could only be size == 0.

Affected

25 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < 06dd21045a7e8bc8701b0ebedcd9a30a6325878b06dd21045a7e8bc8701b0ebedcd9a30a6325878b
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < 0e939a002c8a7d66e60bd0ea6b281fb39d713c1a0e939a002c8a7d66e60bd0ea6b281fb39d713c1a
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < 2a2ff709511617de9c6c072eeee82bcbbdfecaf82a2ff709511617de9c6c072eeee82bcbbdfecaf8
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < 589ec16174dd9378953b8232ae76fad0a96e1563589ec16174dd9378953b8232ae76fad0a96e1563
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < c0691de7df1d51482a52cac93b7fe82fd9dd296bc0691de7df1d51482a52cac93b7fe82fd9dd296b
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < 0307cf443308ecc6be9b2ca312bb31bae5e5a7ad0307cf443308ecc6be9b2ca312bb31bae5e5a7ad
linuxlinux>= 92252eec913b2dd5e7b5de11ea3efa2e64d65cf4 < 4469c0c5b14a0919f5965c7ceac96b523eb57b794469c0c5b14a0919f5965c7ceac96b523eb57b79
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 5.11 < 5.15.1535.15.153
linuxlinux_kernel>= 5.16 < 6.1.836.1.83
linuxlinux_kernel>= 5.9 < 5.10.2145.10.214
linuxlinux_kernel>= 6.2 < 6.6.236.6.23
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2
msrcazl3_hyperv-daemons_6.6.22.1-2_on_azure_linux_3.0
msrcazl3_hyperv-daemons_6.6.35.1-1_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.0HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.