cbcvebase.
CVE-2024-46844
published 2024-09-27

CVE-2024-46844: In the Linux kernel, the following vulnerability has been resolved: um: line: always fill *error_out in setup_one_line() The pointer isn't initialized by…

PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.26%
17.3th percentile
In the Linux kernel, the following vulnerability has been resolved: um: line: always fill *error_out in setup_one_line() The pointer isn't initialized by callers, but I have encountered cases where it's still printed; initialize it in all possible cases in setup_one_line().

Affected

33 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
debianlinux-6.1< linux 6.1.112-1 (bookworm)linux 6.1.112-1 (bookworm)
linuxlinux
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < 3bedb7ce080690d0d6172db790790c1219bcbdd53bedb7ce080690d0d6172db790790c1219bcbdd5
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < 96301fdc2d533a196197c055af875fe33d47ef8496301fdc2d533a196197c055af875fe33d47ef84
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < c8944d449fda9f58c03bd99649b2df09948fc874c8944d449fda9f58c03bd99649b2df09948fc874
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < 43f782c27907f306c664b6614fd6f264ac32cce643f782c27907f306c664b6614fd6f264ac32cce6
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < 289979d64573f43df1d0e6bc6435de63a0d69cdf289979d64573f43df1d0e6bc6435de63a0d69cdf
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < ec5b47a370177d79ae7773858042c107e21f8eccec5b47a370177d79ae7773858042c107e21f8ecc
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < fc843d3837ebcb1c16d3768ef3eb55e25d5331f2fc843d3837ebcb1c16d3768ef3eb55e25d5331f2
linuxlinux>= 31efcebb7d7196adcee73027f513d7c0bf572b47 < 824ac4a5edd3f7494ab1996826c4f47f8ef0f63d824ac4a5edd3f7494ab1996826c4f47f8ef0f63d
linuxlinux_kernel< 4.19.3224.19.322
linuxlinux_kernel>= 0 < 5.10.226-15.10.226-1
linuxlinux_kernel>= 0 < 6.1.112-16.1.112-1
linuxlinux_kernel>= 0 < 6.10.11-16.10.11-1
linuxlinux_kernel>= 0 < 6.10.11-16.10.11-1
linuxlinux_kernel>= 0 < 5.4.0-200.2205.4.0-200.220
linuxlinux_kernel>= 0 < 5.15.0-125.1355.15.0-125.135
linuxlinux_kernel>= 0 < 6.8.0-50.516.8.0-50.51
linuxlinux_kernel>= 4.20 < 5.4.2845.4.284
linuxlinux_kernel>= 5.11 < 5.15.1675.15.167
linuxlinux_kernel>= 5.16 < 6.1.1106.1.110
linuxlinux_kernel>= 5.5 < 5.10.2265.10.226
linuxlinux_kernel>= 6.2 < 6.6.516.6.51
linuxlinux_kernel>= 6.7 < 6.10.106.10.10

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.