CVE Database
/

CVE-2024-53203

Back to search

CVE-2024-53203

Published: Dec 27, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: usb: typec: fix potential array underflow in ucsi_ccg_sync_control() The "command" variable can be controlled by the user via debugfs. The worry is that if con_index is zero then "&uc->ucsi->connector[con_index - 1]" would be an array underflow.

VendorProductVersions

Linux

Linux

affected
170a6726d0e266f2c8f306e3d61715c32f4ee41e - < 627c2a5056aba42a8a96a8fffe8996aeccf919a9
affected
170a6726d0e266f2c8f306e3d61715c32f4ee41e - < e15fd96c0b701c53f9006bcc836eaeb35a05a023
affected
170a6726d0e266f2c8f306e3d61715c32f4ee41e - < e44189455c62469eb91d383ce9103d54c1f807a3
affected
170a6726d0e266f2c8f306e3d61715c32f4ee41e - < 0e66fd8e5a2e45c7dacfc9178ba702153f4a61a8
affected
170a6726d0e266f2c8f306e3d61715c32f4ee41e - < ef92cd55289a282910575c5b9d87f646f2d39b38

+2 more versions

Linux

Linux

affected
5.6
unaffected
0 - < 5.6
unaffected
5.10.238 - <= 5.10.*
unaffected
5.15.184 - <= 5.15.*
unaffected
6.1.140 - <= 6.1.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now