cbcvebase.
CVE-2024-42236
published 2024-08-07

CVE-2024-42236: In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: Prevent OOB read/write in usb_string_copy() Userspace provided…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.23%
14.2th percentile
In the Linux kernel, the following vulnerability has been resolved: usb: gadget: configfs: Prevent OOB read/write in usb_string_copy() Userspace provided string 's' could trivially have the length zero. Left unchecked this will firstly result in an OOB read in the form `if (str[0 - 1] == '\n') followed closely by an OOB write in the form `str[0 - 1] = '\0'`. There is already a validating check to catch strings that are too long. Let's supply an additional check for invalid strings that are too short.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
debianlinux-6.1< linux 6.1.106-1 (bookworm)linux 6.1.106-1 (bookworm)
linuxlinux
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < a444c3fc264119801575ab086e03fb4952f23fd0a444c3fc264119801575ab086e03fb4952f23fd0
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < c95fbdde87e39e5e0ae27f28bf6711edfb985caac95fbdde87e39e5e0ae27f28bf6711edfb985caa
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < e8474a10c535e6a2024c3b06e37e4a3a23beb490e8474a10c535e6a2024c3b06e37e4a3a23beb490
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < 72b8ee0d9826e8ed00e0bdfce3e46b98419b37ce72b8ee0d9826e8ed00e0bdfce3e46b98419b37ce
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < 2d16f63d8030903e5031853e79d731ee5d474e702d16f63d8030903e5031853e79d731ee5d474e70
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < d1205033e912f9332c1dbefa812e6ceb0575ce0ad1205033e912f9332c1dbefa812e6ceb0575ce0a
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < eecfefad0953b2f31aaefa058f7f348ff39c4bbaeecfefad0953b2f31aaefa058f7f348ff39c4bba
linuxlinux>= 88af8bbe4ef781031ad3370847553f3b42ba0076 < 6d3c721e686ea6c59e18289b400cc95c76e927e06d3c721e686ea6c59e18289b400cc95c76e927e0
linuxlinux_kernel< 4.19.3184.19.318
linuxlinux_kernel>= 0 < 5.10.223-15.10.223-1
linuxlinux_kernel>= 0 < 6.1.106-16.1.106-1
linuxlinux_kernel>= 0 < 6.9.10-16.9.10-1
linuxlinux_kernel>= 0 < 6.9.10-16.9.10-1
linuxlinux_kernel>= 0 < 5.4.0-195.2155.4.0-195.215
linuxlinux_kernel>= 0 < 5.15.0-121.1315.15.0-121.131
linuxlinux_kernel>= 0 < 6.8.0-48.486.8.0-48.48
linuxlinux_kernel>= 4.20 < 5.4.2805.4.280
linuxlinux_kernel>= 5.11 < 5.15.1635.15.163
linuxlinux_kernel>= 5.16 < 6.1.1006.1.100
linuxlinux_kernel>= 5.5 < 5.10.2225.10.222
linuxlinux_kernel>= 6.2 < 6.6.416.6.41
linuxlinux_kernel>= 6.7 < 6.9.106.9.10

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.8HIGH
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.