In the Linux kernel, the following vulnerability has been resolved:
crypto: qat/qat4xxx - fix off by one in uofget_name()
The fwobjs[] array has "numobjs" elements so the > needs to be >= to prevent an out of bounds read.
[
{
"signature_type": "Line",
"id": "CVE-2024-53162-1556b4e8",
"target": {
"file": "drivers/crypto/intel/qat/qat_4xxx/adf_4xxx_hw_data.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@700852528fc5295897d6089eea0656d67f9b9d88",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"52346201764318222116205657770326313135",
"196876121258001723926359159643244551017",
"58504332715920171349605543207546604077",
"260289988259110228666441698104333664609"
]
},
"deprecated": false
},
{
"signature_type": "Line",
"id": "CVE-2024-53162-56a296b6",
"target": {
"file": "drivers/crypto/intel/qat/qat_4xxx/adf_4xxx_hw_data.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e69d2845aaa080960f38761f78fd25aa856620c6",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"52346201764318222116205657770326313135",
"196876121258001723926359159643244551017",
"58504332715920171349605543207546604077",
"260289988259110228666441698104333664609"
]
},
"deprecated": false
},
{
"signature_type": "Line",
"id": "CVE-2024-53162-ea4438e4",
"target": {
"file": "drivers/crypto/intel/qat/qat_4xxx/adf_4xxx_hw_data.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@475b5098043eef6e72751aadeab687992a5b63d1",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"52346201764318222116205657770326313135",
"196876121258001723926359159643244551017",
"58504332715920171349605543207546604077",
"260289988259110228666441698104333664609"
]
},
"deprecated": false
},
{
"signature_type": "Line",
"id": "CVE-2024-53162-f18894b4",
"target": {
"file": "drivers/crypto/intel/qat/qat_4xxx/adf_4xxx_hw_data.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@05c9a7a5344425860202a8f3efea4d8ed2d10edb",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"52346201764318222116205657770326313135",
"196876121258001723926359159643244551017",
"58504332715920171349605543207546604077",
"260289988259110228666441698104333664609"
]
},
"deprecated": false
}
]