← All CVEs

CVE-2024-53150

high · 7.1Actively exploited

On the CISA Known Exploited Vulnerabilities catalog

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Added 2025-04-09Remediation due 2025-04-30

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out of bounds reads when finding clock sources The current USB-audio driver code doesn't check bLength of each descriptor at traversing for clock descriptors. That is, when a device provides a bogus descriptor with a shorter bLength, the driver might hit out-of-bounds reads. For addressing it, this patch adds sanity checks to the validator functions for the clock descriptor traversal. When the descriptor length is shorter than expected, it's skipped in the loop. For the clock source and clock multiplier descriptors, we can just check bLength against the sizeof() of each descriptor type. OTOH, the clock selector descriptor of UAC2 and UAC3 has an array of bNrInPins elements and two more fields at its tail, hence those have to be checked in addition to the sizeof() check.

7.1
CVSS
1.4%
EPSS (exploit prob.)
70th
EPSS percentile
2024-12-24
Published

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Weaknesses

CWE-125

Affected products

VendorProductAffected versions
debiandebian_linux11.0
linuxlinux_kernel< 5.4.287
linuxlinux_kernel>= 5.5, < 5.10.231
linuxlinux_kernel>= 5.11, < 5.15.174
linuxlinux_kernel>= 5.16, < 6.1.120
linuxlinux_kernel>= 6.2, < 6.6.64
linuxlinux_kernel>= 6.7, < 6.11.11
linuxlinux_kernel>= 6.12, < 6.12.2

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2024-53150