cbcvebase.
CVE-2024-50282
published 2024-11-19

CVE-2024-50282: In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a possible buffer…

PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.27%
19.5th percentile
In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a possible buffer overflow if size is larger than 4K. (cherry picked from commit f5d873f5825b40d886d03bd2aede91d4cf002434)

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.11.9-1 (forky)linux 6.11.9-1 (forky)
linuxlinux
linuxlinux>= d38ceaf99ed015f2a0b9af3499791bd3a3daae21 < 673bdb4200c092692f83b5f7ba3df57021d52d29673bdb4200c092692f83b5f7ba3df57021d52d29
linuxlinux>= d38ceaf99ed015f2a0b9af3499791bd3a3daae21 < 8906728f2fbd6504cb488f4afdd66af28f330a7a8906728f2fbd6504cb488f4afdd66af28f330a7a
linuxlinux>= d38ceaf99ed015f2a0b9af3499791bd3a3daae21 < 2faaee36e6e30f9efc7fa6bcb0bdcbe05c23f51f2faaee36e6e30f9efc7fa6bcb0bdcbe05c23f51f
linuxlinux>= d38ceaf99ed015f2a0b9af3499791bd3a3daae21 < 4d75b9468021c73108b4439794d69e892b1d24e34d75b9468021c73108b4439794d69e892b1d24e3
linuxlinux_kernel< 4.19.3244.19.324
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.11.9-16.11.9-1
linuxlinux_kernel>= 0 < 6.11.9-16.11.9-1
linuxlinux_kernel>= 0 < 5.4.0-208.2285.4.0-208.228
linuxlinux_kernel>= 0 < 5.15.0-133.1445.15.0-133.144
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 4.20 < 5.4.2865.4.286
linuxlinux_kernel>= 5.11 < 5.15.1725.15.172
linuxlinux_kernel>= 5.16 < 6.1.1176.1.117
linuxlinux_kernel>= 5.5 < 5.10.2305.10.230
linuxlinux_kernel>= 6.2 < 6.6.616.6.61
linuxlinux_kernel>= 6.7 < 6.11.86.11.8
msrcazl3_kernel_6.6.57.1-7_on_azure_linux_3.0
msrcazl3_kernel_6.6.64.2-1_on_azure_linux_3.0
msrccbl2_kernel_5.15.167.1-2_on_cbl_mariner_2.0
msrccbl2_kernel_5.15.173.1-1_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.