cbcvebase.
CVE-2024-38542
published 2024-06-19

CVE-2024-38542: In the Linux kernel, the following vulnerability has been resolved: RDMA/mana_ib: boundary check before installing cq callbacks Add a boundary check inside…

PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.25%
16.0th percentile
In the Linux kernel, the following vulnerability has been resolved: RDMA/mana_ib: boundary check before installing cq callbacks Add a boundary check inside mana_ib_install_cq_cb to prevent index overflow.

Affected

11 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.8.12-1 (forky)linux 6.8.12-1 (forky)
linuxlinux
linuxlinux>= 2a31c5a7e0d87959a03e846523013c75f4395a91 < 168f6fbde0eabd71d1f4133df7d001a950b96977168f6fbde0eabd71d1f4133df7d001a950b96977
linuxlinux>= 2a31c5a7e0d87959a03e846523013c75f4395a91 < f79edef79b6a2161f4124112f9b0c46891bb0b74f79edef79b6a2161f4124112f9b0c46891bb0b74
linuxlinux>= 6.8.2 < 6.8.126.8.12
linuxlinux>= cf9cc859d6ff37ce52c09dfbb169b9ee25595a3f < f12afddfb142587d786df9e3cc4862190d3e2ec8f12afddfb142587d786df9e3cc4862190d3e2ec8
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.12-16.8.12-1
linuxlinux_kernel>= 0 < 6.8.0-40.406.8.0-40.40
linuxlinux_kernel>= 6.8.2 < 6.8.126.8.12
linuxlinux_kernel>= 6.9 < 6.9.36.9.3

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1LOW
vendor_redhat7.1HIGH
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.