CVE-2024-42264

HIGH

Linux Kernel 6.8-6.10.3 - Out-of-bounds Read in DRM V3D Performance Query Extensions

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Prevent out of bounds access in performance query extensions Check that the number of perfmons userspace is passing in the copy and reset extensions is not greater than the internal kernel storage where the ids will be copied into. (cherry picked from commit f32b5128d2c440368b5bf3a7a356823e235caabb)

Scores

CVSS v3 7.1
EPSS 0.0022
EPSS Percentile 12.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-125
Status published
Products (9)
linux/Kernel 6.8.0 - 6.10.4linux
Linux/Linux < 6.8
Linux/Linux 6.10.4 - 6.10.*
Linux/Linux 6.11
Linux/Linux 6.8
Linux/Linux bae7cb5d68001a8d4ceec5964dda74bb9aab7220 - 6ce9efd12ae81cf46bf44eb0348594558dfbb9d2
Linux/Linux bae7cb5d68001a8d4ceec5964dda74bb9aab7220 - 73ad583bd4938bf37d2709fc36901eb6f22f2722
linux/linux_kernel 6.11 rc1
linux/linux_kernel 6.8 - 6.10.4
Published Aug 17, 2024
Tracked Since Feb 18, 2026