CVE-2024-50282

HIGH

Linux Kernel < 4.19.324, 4.20.0-6.6.61, 6.7.0-6.11.8 - Buffer Overflow in amdgpu_debugfs_gprwave_read

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a possible buffer overflow if size is larger than 4K. (cherry picked from commit f5d873f5825b40d886d03bd2aede91d4cf002434)

Scores

CVSS v3 7.8
EPSS 0.0027
EPSS Percentile 19.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-120
Status published
Products (15)
linux/Kernel 4.2.0 - 4.19.324linux
linux/Kernel 4.20.0 - 6.6.61linux
linux/Kernel 6.7.0 - 6.11.8linux
Linux/Linux < 4.2
Linux/Linux 4.19.324 - 4.19.*
Linux/Linux 4.2
Linux/Linux 6.11.8 - 6.11.*
Linux/Linux 6.12
Linux/Linux 6.6.61 - 6.6.*
Linux/Linux d38ceaf99ed015f2a0b9af3499791bd3a3daae21 - 2faaee36e6e30f9efc7fa6bcb0bdcbe05c23f51f
... and 5 more
Published Nov 19, 2024
Tracked Since Feb 18, 2026