cbcvebase.
CVE-2024-36957
published 2024-05-30

CVE-2024-36957: In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: avoid off-by-one read from userspace We try to access count + 1 byte from…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.24%
14.9th percentile
In the Linux kernel, the following vulnerability has been resolved: octeontx2-af: avoid off-by-one read from userspace We try to access count + 1 byte from userspace with memdup_user(buffer, count + 1). However, the userspace only provides buffer of count bytes and only these count bytes are verified to be okay to access. To ensure the copied buffer is NUL terminated, we use memdup_user_nul instead.

Affected

24 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.94-1 (bookworm)linux 6.1.94-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 3a2eb515d1367c0f667b76089a6e727279c688b8 < ec697fbd38cbe2eef0948b58673b146caa95402fec697fbd38cbe2eef0948b58673b146caa95402f
linuxlinux>= 3a2eb515d1367c0f667b76089a6e727279c688b8 < 8f11fe3ea3fc261640cfc8a5addd838000407c678f11fe3ea3fc261640cfc8a5addd838000407c67
linuxlinux>= 3a2eb515d1367c0f667b76089a6e727279c688b8 < 0a0285cee11c7dcc2657bcd456e469958a5009e70a0285cee11c7dcc2657bcd456e469958a5009e7
linuxlinux>= 3a2eb515d1367c0f667b76089a6e727279c688b8 < fc3e0076c1f82fe981d321e3a7bad4cbee542c19fc3e0076c1f82fe981d321e3a7bad4cbee542c19
linuxlinux>= 3a2eb515d1367c0f667b76089a6e727279c688b8 < f299ee709fb45036454ca11e90cb2810fe771878f299ee709fb45036454ca11e90cb2810fe771878
linuxlinux>= 5.10.20 < 5.10.2175.10.217
linuxlinux>= 5.11.3 < 5.125.12
linuxlinux>= dae49384d0d7695540e2d75168f323cef1384810 < bcdac70adceb44373da204c3c297f2a98e13216ebcdac70adceb44373da204c3c297f2a98e13216e
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.218-15.10.218-1
linuxlinux_kernel>= 0 < 6.1.94-16.1.94-1
linuxlinux_kernel>= 0 < 6.8.11-16.8.11-1
linuxlinux_kernel>= 0 < 6.8.11-16.8.11-1
linuxlinux_kernel>= 0 < 5.15.0-118.1285.15.0-118.128
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 5.10.20 < 5.10.2175.10.217
linuxlinux_kernel>= 5.11.3 < 5.15.1595.15.159
linuxlinux_kernel>= 5.16 < 6.1.916.1.91
linuxlinux_kernel>= 6.2 < 6.6.316.6.31
linuxlinux_kernel>= 6.7 < 6.8.106.8.10

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.