Unchecked Return Value in ida_simple_get Leads to Index Out of Bounds
CVE-2024-4810

5.3MEDIUM

Key Information:

Vendor

Linux

Vendor
CVE Published:
14 May 2024

What is CVE-2024-4810?

In register_device, the return value of ida_simple_get is unchecked, in witch ida_simple_get will use an invalid index value.

To address this issue, index should be checked after ida_simple_get. When the index value is abnormal, a warning message should be printed, the port should be dropped, and the value should be recorded.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux kernel Linux v4.11-rc4

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Huai-Yuan Liu <qq810974084@gmail.com>
白家驹 <baijiaju@buaa.edu.cn>
.