CVE-2024-43877

Source
https://cve.org/CVERecord?id=CVE-2024-43877
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-43877.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-43877
Downstream
Related
Published
2024-08-21T00:06:29.330Z
Modified
2026-03-11T07:47:21.419392Z
Summary
media: pci: ivtv: Add check for DMA map result
Details

In the Linux kernel, the following vulnerability has been resolved:

media: pci: ivtv: Add check for DMA map result

In case DMA fails, 'dma->SGlength' is 0. This value is later used to access 'dma->SGarray[dma->SGlength - 1]', which will cause out of bounds access.

Add check to return early on invalid value. Adjust warnings accordingly.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/43xxx/CVE-2024-43877.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4551236b55e80b2c1720b10b77e9400118b2339e
Fixed
38f72c7e7c6b55614f9407555fd5ce9d019b0fa4
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
66c8a83bf1de2eb3eea4734c7eda22255a965f11
Fixed
81d0664bed91a858c7b50c263954b59d65f1b414
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1932dc2f4cf6ac23e48e5fcc24d21adbe35691d1
Fixed
24062aa7407091dee3e45a8e8037df437e848718
Fixed
3d8fd92939e21ff0d45100ab208f8124af79402a
Fixed
c766065e8272085ea9c436414b7ddf1f12e7787b
Fixed
629913d6d79508b166c66e07e4857e20233d85a9
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
1b00b7335000c0e107f774cc8ee4d5340f824f28

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-43877.json"