CVE-2024-50129

high

Description

In the Linux kernel, the following vulnerability has been resolved: net: pse-pd: Fix out of bound for loop Adjust the loop limit to prevent out-of-bounds access when iterating over PI structures. The loop should not reach the index pcdev->nr_lines since we allocate exactly pcdev->nr_lines number of PI structures. This fix ensures proper bounds are maintained during iterations.

References

https://git.kernel.org/stable/c/f2767a41959e60763949c73ee180e40c686e807e

https://git.kernel.org/stable/c/50ea68146d82f34b3ad80d8290ef8222136dedd7

Details

Source: Mitre, NVD

Published: 2024-11-05

Updated: 2024-11-07

Risk Information

CVSS v2

Base Score: 6.8

Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High