cbcvebase.
CVE-2024-36015
published 2024-05-29

CVE-2024-36015: In the Linux kernel, the following vulnerability has been resolved: ppdev: Add an error check in register_device In register_device, the return value of…

PriorityP337high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.25%
16.8th percentile
In the Linux kernel, the following vulnerability has been resolved: ppdev: Add an error check in register_device In register_device, the return value of ida_simple_get is unchecked, in witch ida_simple_get will use an invalid index value. To address this issue, index should be checked after ida_simple_get. When the index value is abnormal, a warning message should be printed, the port should be dropped, and the value should be recorded.

Affected

32 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux
linuxlinux>= 4.10.7 < 4.114.11
linuxlinux>= 4.9.22 < 4.104.10
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < 65cd017d43f4319a56747d38308b0a24cf57299e65cd017d43f4319a56747d38308b0a24cf57299e
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < b8c6b83cc3adff3ddf403c8c7063fe6d08b2b9d9b8c6b83cc3adff3ddf403c8c7063fe6d08b2b9d9
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < d32caf51379a4d71db03d3d4d7c22d27cdf7f68bd32caf51379a4d71db03d3d4d7c22d27cdf7f68b
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < b65d0410b879af0295d22438a4a32012786d152ab65d0410b879af0295d22438a4a32012786d152a
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < df9329247dbbf00f6057e002139ab3fa529ad828df9329247dbbf00f6057e002139ab3fa529ad828
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < ec3468221efec6660ff656e9ebe51ced3520fc57ec3468221efec6660ff656e9ebe51ced3520fc57
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < 5d5b24edad1107a2ffa99058f20f6aeeafeb5d395d5b24edad1107a2ffa99058f20f6aeeafeb5d39
linuxlinux>= 9a69645dde1188723d80745c1bc6ee9af2cbe2a7 < fbf740aeb86a4fe82ad158d26d711f2f3be79b3efbf740aeb86a4fe82ad158d26d711f2f3be79b3e
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.221-15.10.221-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 6.9.7-16.9.7-1
linuxlinux_kernel>= 0 < 5.4.0-192.2125.4.0-192.212
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-44.446.8.0-44.44
linuxlinux_kernel>= 0 < 4.15.0-237.2494.15.0-237.249
linuxlinux_kernel>= 4.10.7 < 4.114.11
linuxlinux_kernel>= 4.11.1 < 4.19.3164.19.316

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.