THREATOPS
THREAT OPSThreat News › [NVD] CVE-2024-26597 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_policy The variable rmnet_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. See bug trace below: =

[NVD] CVE-2024-26597 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_policy The variable rmnet_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. See bug trace below: =

lownvdPublished 2024-02-23

CVE-2024-26597 CVSS: 7.8 HIGH Published: 2024-02-23T15:15:09.557

In the Linux kernel, the following vulnerability has been resolved:

net: qualcomm: rmnet: fix global oob in rmnet_policy

The variable rmnet_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. See bug trace below:

=======================================================

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-26597