cbcvebase.
CVE-2024-46747
published 2024-09-18

CVE-2024-46747: In the Linux kernel, the following vulnerability has been resolved: HID: cougar: fix slab-out-of-bounds Read in cougar_report_fixup report_fixup for the Cougar…

PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.27%
18.7th percentile
In the Linux kernel, the following vulnerability has been resolved: HID: cougar: fix slab-out-of-bounds Read in cougar_report_fixup report_fixup for the Cougar 500k Gaming Keyboard was not verifying that the report descriptor size was correct before accessing it

Affected

34 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
debianlinux-6.1< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
linuxlinux
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < e239e44dcd419b13cf840e2a3a833204e4329714e239e44dcd419b13cf840e2a3a833204e4329714
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < fac3cb3c6428afe2207593a183b5bc4742529dfdfac3cb3c6428afe2207593a183b5bc4742529dfd
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < 34185de73d74fdc90e8651cfc472bfea6073a13f34185de73d74fdc90e8651cfc472bfea6073a13f
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < 890dde6001b651be79819ef7a3f8c71fc8f9cabf890dde6001b651be79819ef7a3f8c71fc8f9cabf
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < e4a602a45aecd6a98b4b37482f5c9f8f67a32ddde4a602a45aecd6a98b4b37482f5c9f8f67a32ddd
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < 30e9ce7cd5591be639b53595c95812f1a2afdfdc30e9ce7cd5591be639b53595c95812f1a2afdfdc
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < 48b2108efa205f4579052c27fba2b22cc6ad8aa048b2108efa205f4579052c27fba2b22cc6ad8aa0
linuxlinux>= b8e759b8f6dab1c473c30ac12709095d0b81078e < a6e9c391d45b5865b61e569146304cff72821a5da6e9c391d45b5865b61e569146304cff72821a5d
linuxlinux_kernel< 4.19.3224.19.322
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1
linuxlinux_kernel>= 0 < 6.1.112-16.1.112-1
linuxlinux_kernel>= 0 < 6.10.11-16.10.11-1
linuxlinux_kernel>= 0 < 6.10.11-16.10.11-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 4.20 < 5.4.2845.4.284
linuxlinux_kernel>= 5.11 < 5.15.1675.15.167
linuxlinux_kernel>= 5.16 < 6.1.1106.1.110
linuxlinux_kernel>= 5.5 < 5.10.2265.10.226
linuxlinux_kernel>= 6.2 < 6.6.516.6.51

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.1HIGH
vendor_msrc7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.