CVE-2024-53061
גבוהה 7.8
תיאור (מקור, אנגלית)
In the Linux kernel, the following vulnerability has been resolved: media: s5p-jpeg: prevent buffer overflows The current logic allows word to be less than 2. If this happens, there will be buffer overflows, as reported by smatch. Add extra checks to prevent it. While here, remove an unused word = 0 assignment.
מדדים
- CVSS 3.1
-
7.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-7/8/2026
- CWE
- CWE-191
מוצרים מושפעים
linux: linux kernel
קישורים
- https://git.kernel.org/stable/c/14a22762c3daeac59a5a534e124acbb4d7a79b3a Patch
- https://git.kernel.org/stable/c/784bc785a453eb2f8433dd62075befdfa1b2d6fd Patch
- https://git.kernel.org/stable/c/a930cddfd153b5d4401df0c01effa14c831ff21e Patch
- https://git.kernel.org/stable/c/c5f6fefcda8fac8f082b6c5bf416567f4e100c51 Patch
- https://git.kernel.org/stable/c/c85db2d4432de4ff9d97006691ce2dcb5bda660e Patch
- https://git.kernel.org/stable/c/c951a0859fdacf49a2298b5551a7e52b95ff6f51 Patch
- https://git.kernel.org/stable/c/e5117f6e7adcf9fd7546cdd0edc9abe4474bc98b Patch
- https://git.kernel.org/stable/c/f54e8e1e39dacccebcfb9a9a36f0552a0a97e2ef Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
- https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html