We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-45008

Input: MT - limit max slots



AssignerLinux
Reserved2024-08-21
Published2024-09-04
Updated2024-09-15

Description

In the Linux kernel, the following vulnerability has been resolved: Input: MT - limit max slots syzbot is reporting too large allocation at input_mt_init_slots(), for num_slots is supplied from userspace using ioctl(UI_DEV_CREATE). Since nobody knows possible max slots, this patch chose 1024.

Product status

Default status
0x40031b0d10

1da177e4c3f4 before 2829c8061489
affected

1da177e4c3f4 before 87f610a1a7fb
affected

1da177e4c3f4 before 05dd9aabd04f
affected

1da177e4c3f4 before 95f73d01f547
affected

1da177e4c3f4 before 94736334b8a2
affected

1da177e4c3f4 before 8f04edd554d1
affected

1da177e4c3f4 before cd19f1799c32
affected

1da177e4c3f4 before 99d3bf5f7377
affected

Default status
0x40031b0e60

4.19.321
unaffected

5.4.283
unaffected

5.10.225
unaffected

5.15.166
unaffected

6.1.107
unaffected

6.6.48
unaffected

6.10.7
unaffected

6.11
unaffected

References

https://git.kernel.org/stable/c/2829c80614890624456337e47320289112785f3e

https://git.kernel.org/stable/c/87f610a1a7fbdb1f2e3d90b54c955bd3b8a0c322

https://git.kernel.org/stable/c/05dd9aabd04f9b5eb04dab9bb83d8c3e982d7549

https://git.kernel.org/stable/c/95f73d01f547dfc67fda3022c51e377a0454b505

https://git.kernel.org/stable/c/94736334b8a25e4fae8daa6934e54a31f099be43

https://git.kernel.org/stable/c/8f04edd554d191834e9e1349ef030318ea6b11ba

https://git.kernel.org/stable/c/cd19f1799c32ba7b874474b1b968815ce5364f73

https://git.kernel.org/stable/c/99d3bf5f7377d42f8be60a6b9cb60fb0be34dceb

cve.org CVE-2024-45008

nvd.nist.gov CVE-2024-45008

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-45008
Subscribe to our newsletter to learn more about our work.