Executive Summary

Informations
Name CVE-2024-42237 First vendor Publication 2024-08-07
Vendor Cve Last vendor Modification 2024-08-08

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Overall CVSS Score 5.5
Base Score 5.5 Environmental Score 5.5
impact SubScore 3.6 Temporal Score 5.5
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact None
Integrity Impact None Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

firmware: cs_dsp: Validate payload length before processing block

Move the payload length check in cs_dsp_load() and cs_dsp_coeff_load() to be done before the block is processed.

The check that the length of a block payload does not exceed the number of remaining bytes in the firwmware file buffer was being done near the end of the loop iteration. However, some code before that check used the length field without validating it.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-42237

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3658

Sources (Detail)

https://git.kernel.org/stable/c/259955eca9b7acf1299b1ac077d8cfbe12df35d8
https://git.kernel.org/stable/c/3a9cd924aec1288d675df721f244da4dd7e16cff
https://git.kernel.org/stable/c/6598afa9320b6ab13041616950ca5f8f938c0cf1
https://git.kernel.org/stable/c/71d9e313d8f7e18c543a9c80506fe6b1eb1fe0c8
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
Date Informations
2025-03-29 03:39:02
  • Multiple Updates
2025-03-28 13:43:53
  • Multiple Updates
2025-03-28 03:17:26
  • Multiple Updates
2025-03-19 03:12:49
  • Multiple Updates
2025-03-18 03:25:44
  • Multiple Updates
2025-03-14 03:13:03
  • Multiple Updates
2025-03-06 14:09:34
  • Multiple Updates
2025-02-22 03:23:05
  • Multiple Updates
2025-01-08 03:04:13
  • Multiple Updates
2025-01-07 03:03:46
  • Multiple Updates
2024-12-25 03:02:23
  • Multiple Updates
2024-12-12 03:05:20
  • Multiple Updates
2024-11-23 03:02:24
  • Multiple Updates
2024-11-22 03:00:35
  • Multiple Updates
2024-11-20 02:58:55
  • Multiple Updates
2024-11-14 02:59:14
  • Multiple Updates
2024-11-09 02:59:15
  • Multiple Updates
2024-10-26 02:56:39
  • Multiple Updates
2024-10-25 02:58:33
  • Multiple Updates
2024-10-23 02:57:46
  • Multiple Updates
2024-10-03 02:53:04
  • Multiple Updates
2024-10-02 02:51:28
  • Multiple Updates
2024-09-15 02:49:10
  • Multiple Updates
2024-09-12 02:48:43
  • Multiple Updates
2024-09-07 02:47:42
  • Multiple Updates
2024-09-06 02:46:52
  • Multiple Updates
2024-09-04 02:50:04
  • Multiple Updates
2024-08-22 02:47:56
  • Multiple Updates
2024-08-08 21:27:39
  • Multiple Updates
2024-08-08 00:27:22
  • Multiple Updates
2024-08-07 21:27:25
  • First insertion