CVE-2024-38619

Source
https://cve.org/CVERecord?id=CVE-2024-38619
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-38619.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-38619
Downstream
Related
Published
2024-06-20T06:47:32.444Z
Modified
2026-06-18T03:56:59.440715942Z
Summary
usb-storage: alauda: Check whether the media is initialized
Details

In the Linux kernel, the following vulnerability has been resolved:

usb-storage: alauda: Check whether the media is initialized

The member "uzonesize" of struct alaudainfo will remain 0 if alaudainitmedia() fails, potentially causing divide errors in alaudareaddata() and alaudawritelba(). - Add a member "mediainitialized" to struct alaudainfo. - Change a condition in alaudacheckmedia() to ensure the first initialization. - Add an error check for the return value of alaudainit_media().

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/38xxx/CVE-2024-38619.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e80b0fade09ef1ee67b0898d480d4c588f124d5f
Fixed
e0aab7b07a9375337847c9d74a5ec044071e01c8
Fixed
51fe16c058acb22f847e69bc598066ed0bcd5c15
Fixed
f68820f1256b21466ff094dd97f243b7e708f9c1
Fixed
3eee13ab67f65606faa66e0c3c729e4f514838fd
Fixed
e0e2eec76920a133dd49a4fbe4656d83596a1361
Fixed
2cc32639ec347e3365075b130f9953ef16cb13f1
Fixed
24bff7f714bdff97c2a75a0ff6a368cdf8ad5af4
Fixed
16637fea001ab3c8df528a8995b3211906165a30

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-38619.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.16
Fixed
4.19.317
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.279
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.221
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.162
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.95
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.35
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.9.6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-38619.json"