EN

Tracker / CVE-2024-44960

CVE-2024-44960

Media 5.5

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: core: Check for unset descriptor Make sure the descriptor has been set before looking at maxpacket. This fixes a null pointer panic in this case. This may happen if the gadget doesn't properly set up the endpoint for the current speed, or the gadget descriptors are malformed and the descriptor for the speed/endpoint are not found. No current gadget driver is known to have this problem, but this may cause a hard-to-find bug during development of new gadgets.

Prodotti e versioni affette

linux linux_kernel
linux linux_kernel · … → 3.16.80
linux linux_kernel · 3.17 → 4.4.199
linux linux_kernel · 4.10 → 4.14.152
linux linux_kernel · 4.15 → 4.19.320
linux linux_kernel · 4.20 → 5.3.9
linux linux_kernel · 4.5 → 4.9.199
linux linux_kernel · 5.11 → 5.15.165
linux linux_kernel · 5.16 → 6.1.105
linux linux_kernel · 5.4 → 5.4.282
linux linux_kernel · 5.5 → 5.10.224
linux linux_kernel · 6.2 → 6.6.46
linux linux_kernel · 6.7 → 6.10.5

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti