cbcvebase.
CVE-2024-58014
published 2025-02-27

CVE-2024-58014: In the Linux kernel, the following vulnerability has been resolved: wifi: brcmsmac: add gain range check to wlc_phy_iqcal_gainparams_nphy() In…

PriorityP430high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.21%
10.7th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: brcmsmac: add gain range check to wlc_phy_iqcal_gainparams_nphy() In 'wlc_phy_iqcal_gainparams_nphy()', add gain range check to WARN() instead of possible out-of-bounds 'tbl_iqcal_gainparams_nphy' access. Compile tested only. Found by Linux Verification Center (linuxtesting.org) with SVACE.

Affected

26 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
debianlinux-6.1< linux 6.1.129-1 (bookworm)linux 6.1.129-1 (bookworm)
googlechrome_chrome
linuxlinux
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < 0a457223cb2b9ca46bae7de387d0f4c093b0220d0a457223cb2b9ca46bae7de387d0f4c093b0220d
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < 13ef16c4fe384b1e70277bbe1d87934ee6c81e1213ef16c4fe384b1e70277bbe1d87934ee6c81e12
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < d280a12e9b87819a8a209639d600b48a2d6d65dcd280a12e9b87819a8a209639d600b48a2d6d65dc
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < ada9df08b3ef683507e75b92f522fb659260147fada9df08b3ef683507e75b92f522fb659260147f
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < 093286c33409bf38896f2dab0c0bb6ca388afb33093286c33409bf38896f2dab0c0bb6ca388afb33
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < c27ce584d274f6ad3cba2294497de824a3c66646c27ce584d274f6ad3cba2294497de824a3c66646
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < 6f6e293246dc1f5b2b6b3d0f2d757598489cda796f6e293246dc1f5b2b6b3d0f2d757598489cda79
linuxlinux>= 5b435de0d786869c95d1962121af0d7df2542009 < 3f4a0948c3524ae50f166dbc6572a3296b014e623f4a0948c3524ae50f166dbc6572a3296b014e62
linuxlinux_kernel>= 0 < 5.10.237-15.10.237-1
linuxlinux_kernel>= 0 < 6.1.129-16.1.129-1
linuxlinux_kernel>= 0 < 6.12.15-16.12.15-1
linuxlinux_kernel>= 0 < 6.12.15-16.12.15-1
linuxlinux_kernel>= 0 < 5.4.0-216.2365.4.0-216.236
linuxlinux_kernel>= 0 < 5.15.0-140.1505.15.0-140.150
linuxlinux_kernel>= 0 < 6.8.0-64.676.8.0-64.67
linuxlinux_kernel>= 3.2 < 5.4.2915.4.291
linuxlinux_kernel>= 5.11 < 5.15.1795.15.179
linuxlinux_kernel>= 5.16 < 6.1.1296.1.129
linuxlinux_kernel>= 5.5 < 5.10.2355.10.235
linuxlinux_kernel>= 6.13 < 6.13.36.13.3
linuxlinux_kernel>= 6.2 < 6.6.786.6.78

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.