CVE-2024-53189

In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: fix bounds checker error in nl80211_parse_sched_scan The channels array in the cfg80211_scan_request has a __counted_by attribute attached to it, which points to the n_channels variable. This attribute is used in bounds checking, and if it is not set before the array is filled, then the bounds sanitizer will issue a warning or a kernel panic if CONFIG_UBSAN_TRAP is set. This patch sets the size of allocated memory as the initial value for n_channels. It is updated with the actual number of added elements after the array is filled.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

08 Oct 2025, 14:06

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://git.kernel.org/stable/c/1a7b62ddf2c7642878c24f0e556041bb58c37527 - () https://git.kernel.org/stable/c/1a7b62ddf2c7642878c24f0e556041bb58c37527 - Patch
References () https://git.kernel.org/stable/c/9c46a3a5b394d6d123866aa44436fc2cd342eb0d - () https://git.kernel.org/stable/c/9c46a3a5b394d6d123866aa44436fc2cd342eb0d - Patch
References () https://git.kernel.org/stable/c/d4ef643ea78c59c22546046c25dc6e7206267672 - () https://git.kernel.org/stable/c/d4ef643ea78c59c22546046c25dc6e7206267672 - Patch
First Time Linux
Linux linux Kernel
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: wifi: nl80211: fix bounds checker error in nl80211_parse_sched_scan La matriz channels en cfg80211_scan_request tiene un atributo __counted_by adjunto, que apunta a la variable n_channels. Este atributo se utiliza en la comprobación de los límites y, si no se configura antes de que se complete la matriz, el desinfectante de los límites emitirá una advertencia o un pánico del kernel si se configura CONFIG_UBSAN_TRAP. Este parche establece el tamaño de la memoria asignada como el valor inicial para n_channels. Se actualiza con el número real de elementos agregados después de que se complete la matriz.
CWE NVD-CWE-noinfo

27 Dec 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-27 14:15

Updated : 2025-10-08 14:06


NVD link : CVE-2024-53189

Mitre link : CVE-2024-53189

CVE.ORG link : CVE-2024-53189


JSON object : View

Products Affected

linux

  • linux_kernel