cbcvebase.
CVE-2024-50291
published 2024-11-19

CVE-2024-50291: In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: add missing buffer index check dvb_vb2_expbuf() didn't check if the given…

PriorityP423medium5.5CVSS 3.1
AVLACLPRLUINSUCNIHAN
EPSS
0.19%
8.9th percentile
In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: add missing buffer index check dvb_vb2_expbuf() didn't check if the given buffer index was for a valid buffer. Add this check.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.11.9-1 (forky)linux 6.11.9-1 (forky)
linuxlinux
linuxlinux>= 7dc866df40127dceac9ba83ae16c0c11e7d1666f < 721c37af0355cc0b540909c57fd7930dc99c72d8721c37af0355cc0b540909c57fd7930dc99c72d8
linuxlinux>= 7dc866df40127dceac9ba83ae16c0c11e7d1666f < fa88dc7db176c79b50adb132a56120a1d4d9d18bfa88dc7db176c79b50adb132a56120a1d4d9d18b
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.11.9-16.11.9-1
linuxlinux_kernel>= 0 < 6.11.9-16.11.9-1
linuxlinux_kernel>= 0 < 6.8.0-58.606.8.0-58.60
linuxlinux_kernel>= 0 < 6.11.0-18.186.11.0-18.18
linuxlinux_kernel>= 6.8 < 6.11.86.11.8

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.