cbcvebase.
CVE-2024-46759
published 2024-09-18

CVE-2024-46759: In the Linux kernel, the following vulnerability has been resolved: hwmon: (adc128d818) Fix underflows seen when writing limit attributes DIV_ROUND_CLOSEST()…

PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.28%
20.5th percentile
In the Linux kernel, the following vulnerability has been resolved: hwmon: (adc128d818) Fix underflows seen when writing limit attributes DIV_ROUND_CLOSEST() after kstrtol() results in an underflow if a large negative number such as -9223372036854775808 is provided by the user. Fix it by reordering clamp_val() and DIV_ROUND_CLOSEST() operations.

Affected

35 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
debianlinux-6.1< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
linuxlinux
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < 05419d0056dcf7088687e561bb583cc06deba77705419d0056dcf7088687e561bb583cc06deba777
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < 7645d783df23878342d5d8d22030c3861d2d54267645d783df23878342d5d8d22030c3861d2d5426
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < 2a3add62f183459a057336381ef3a896da01ce382a3add62f183459a057336381ef3a896da01ce38
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < 019ef2d396363ecddc46e826153a842f8603799b019ef2d396363ecddc46e826153a842f8603799b
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < f7f5101af5b47a331cdbfa42ba64c507b47dd1fef7f5101af5b47a331cdbfa42ba64c507b47dd1fe
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < 6891b11a0c6227ca7ed15786928a07b1c0e4d4af6891b11a0c6227ca7ed15786928a07b1c0e4d4af
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < b0bdb43852bf7f55ba02f0cbf00b4ea7ca897bffb0bdb43852bf7f55ba02f0cbf00b4ea7ca897bff
linuxlinux>= b4c9c1a7987ef07d8345bf9d19f36d97423b6b25 < 8cad724c8537fe3e0da8004646abc00290adae408cad724c8537fe3e0da8004646abc00290adae40
linuxlinux_kernel< 4.19.3224.19.322
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1
linuxlinux_kernel>= 0 < 6.1.112-16.1.112-1
linuxlinux_kernel>= 0 < 6.10.11-16.10.11-1
linuxlinux_kernel>= 0 < 6.10.11-16.10.11-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 0 < 4.4.0-261.2954.4.0-261.295
linuxlinux_kernel>= 0 < 4.15.0-231.2434.15.0-231.243
linuxlinux_kernel>= 4.20 < 5.4.2845.4.284
linuxlinux_kernel>= 5.11 < 5.15.1675.15.167
linuxlinux_kernel>= 5.16 < 6.1.1106.1.110
linuxlinux_kernel>= 5.5 < 5.10.2265.10.226

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.