Executive Summary

Informations
Name CVE-2024-47682 First vendor Publication 2024-10-21
Vendor Cve Last vendor Modification 2024-10-23

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Overall CVSS Score 7.8
Base Score 7.8 Environmental Score 7.8
impact SubScore 5.9 Temporal Score 7.8
Exploitabality Sub Score 1.8
 
Attack Vector Local Attack Complexity Low
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact High
Integrity Impact High Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base Score N/A Attack Range N/A
Cvss Impact Score N/A Attack Complexity N/A
Cvss Expoit Score N/A Authentication N/A
Calculate full CVSS 2.0 Vectors scores

Detail

In the Linux kernel, the following vulnerability has been resolved:

scsi: sd: Fix off-by-one error in sd_read_block_characteristics()

Ff the device returns page 0xb1 with length 8 (happens with qemu v2.x, for example), sd_read_block_characteristics() may attempt an out-of-bounds memory access when accessing the zoned field at offset 8.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-47682

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-193 Off-by-one Error

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 8
Os 3636

Sources (Detail)

https://git.kernel.org/stable/c/413df704f149dec585df07466d2401bbd1f490a0
https://git.kernel.org/stable/c/568c7c4c77eee6df7677bb861b7cee7398a3255d
https://git.kernel.org/stable/c/60312ae7392f9c75c6591a52fc359cf7f810d48f
https://git.kernel.org/stable/c/a776050373893e4c847a49abeae2ccb581153df0
https://git.kernel.org/stable/c/f81eaf08385ddd474a2f41595a7757502870c0eb
Source Url

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
Date Informations
2024-11-23 03:03:47
  • Multiple Updates
2024-11-22 03:01:56
  • Multiple Updates
2024-11-20 03:00:15
  • Multiple Updates
2024-11-14 03:00:33
  • Multiple Updates
2024-11-09 03:00:32
  • Multiple Updates
2024-10-26 00:28:45
  • Multiple Updates
2024-10-25 21:29:39
  • Multiple Updates
2024-10-25 00:28:43
  • Multiple Updates
2024-10-24 17:27:50
  • Multiple Updates
2024-10-24 03:05:08
  • Multiple Updates
2024-10-23 21:28:10
  • Multiple Updates
2024-10-21 21:27:31
  • Multiple Updates
2024-10-21 17:27:35
  • First insertion