THREAT OPS › Threat News › [NVD] CVE-2024-26597 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved:
net: qualcomm: rmnet: fix global oob in rmnet_policy
The variable rmnet_link_ops assign a *bigger* maxtype which leads to a
global out-of-bounds read when parsing the netlink attributes. See bug
trace below:
=
[NVD] CVE-2024-26597 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_policy The variable rmnet_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. See bug trace below: =
CVE-2024-26597 CVSS: 7.8 HIGH Published: 2024-02-23T15:15:09.557
In the Linux kernel, the following vulnerability has been resolved:
net: qualcomm: rmnet: fix global oob in rmnet_policy
The variable rmnet_link_ops assign a *bigger* maxtype which leads to a global out-of-bounds read when parsing the netlink attributes. See bug trace below:
=======================================================
Indicators of compromise
- CVE-2024-26597cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-26597