CyberSec.Space Logo
Back to CVE Browser

CVE-2024-53197

πŸ”₯ Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2024-12-27
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devices A bogus device can provide a bNumConfigurations value that exceeds the initial value used in usb_get_configuration for allocating dev->config. This can lead to out-of-bounds accesses later, e.g. in usb_destroy_configuration.

Affected Platforms (CPE)

πŸ’»
Linux

Linux Kernel

>= 2.6.12 and < 4.19.325>= 4.20 and < 5.4.287>= 5.5 and < 5.10.231>= 5.11 and < 5.15.174>= 5.16 and < 6.1.120>= 6.2 and < 6.6.64>= 6.7 and < 6.11.11>= 6.12 and < 6.12.2
πŸ’»
Debian

Debian Linux

= 11.0

References & Advisories

Related Vulnerabilities