CVE-2024-50302
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD
Description
In the Linux kernel, the following vulnerability has been resolved:
HID: core: zero-initialize the report buffer
Since the report buffer is used by all kinds of drivers in various ways, let's
zero-initialize it during allocation to make sure that it can't be ever used
to leak kernel memory via specially-crafted report.
Affected (17)
Products: Google: Android · Debian: Debian Linux · Siemens: Simatic S7 1500 Tm Mfp Firmware, Sinec Os · +1 more
Show all products
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 11.0 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Siemens Simatic S7 1500 Tm Mfp | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 3.2 |
| Running on/with | Platform Versions |
|---|---|
Siemens Ruggedcom Rst2428p | All versions |
Siemens Scalance Xc316 8 | All versions |
Siemens Scalance Xc319 4 | All versions |
Siemens Scalance Xc324 4 | All versions |
Siemens Scalance Xc324 4eec | All versions |
Siemens Scalance Xc332 | All versions |
Siemens Scalance Xc416 8 | All versions |
Siemens Scalance Xc419 4 | All versions |
Siemens Scalance Xc424 4 | All versions |
Siemens Scalance Xc432 | All versions |
Siemens Scalance Xch328 | All versions |
Siemens Scalance Xcm324 | All versions |
Siemens Scalance Xcm328 | All versions |
Siemens Scalance Xcm332 | All versions |
Siemens Scalance Xr302 32 | All versions |
Siemens Scalance Xr322 12 | All versions |
Siemens Scalance Xr326 8 | All versions |
Siemens Scalance Xr326 8eec | All versions |
Siemens Scalance Xr502 32 | All versions |
Siemens Scalance Xr522 12 | All versions |
Siemens Scalance Xr524 8c | All versions |
Siemens Scalance Xr524 8wg | All versions |
Siemens Scalance Xr526 8 | All versions |
Siemens Scalance Xr526 8c | All versions |
Siemens Scalance Xr528 6m | All versions |
Siemens Scalance Xr552 12m | All versions |
Siemens Scalance Xrh334 | All versions |
Siemens Scalance Xrm334 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| From 3.12 to 4.19.324 |
Related CWEs
References (13)
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Third Party Advisory
Source: 0b142b55-0307-4c5a-b3c9-f314f3fb7c5e
Third Party Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource
Timeline
No history available yet.