CVE Database
/

CVE-2024-49860

Back to search

CVE-2024-49860

Published: Oct 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: ACPI: sysfs: validate return type of _STR method Only buffer objects are valid return values of _STR. If something else is returned description_show() will access invalid memory.

VendorProductVersions

Linux

Linux

affected
d1efe3c324ead77d3f6cd85093b50f6bd2e17aba - < 92fd5209fc014405f63a7db79802ca4b01dc0c05
affected
d1efe3c324ead77d3f6cd85093b50f6bd2e17aba - < 2364b6af90c6b6d8a4783e0d3481ca80af699554
affected
d1efe3c324ead77d3f6cd85093b50f6bd2e17aba - < 4b081991c4363e072e1748efed0bbec8a77daba5
affected
d1efe3c324ead77d3f6cd85093b50f6bd2e17aba - < 0cdfb9178a3bba843c95c2117c82c15f1a64b9ce
affected
d1efe3c324ead77d3f6cd85093b50f6bd2e17aba - < 5c8d007c14aefc3f2ddf71e4c40713733dc827be

+4 more versions

Linux

Linux

affected
3.7
unaffected
0 - < 3.7
unaffected
4.19.323 - <= 4.19.*
unaffected
5.4.285 - <= 5.4.*
unaffected
5.10.227 - <= 5.10.*

+6 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now