CVE-2024-49860

Source
https://cve.org/CVERecord?id=CVE-2024-49860
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49860.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-49860
Downstream
Related
Published
2024-10-21T12:27:18.640Z
Modified
2026-03-11T07:53:36.849744Z
Summary
ACPI: sysfs: validate return type of _STR method
Details

In the Linux kernel, the following vulnerability has been resolved:

ACPI: sysfs: validate return type of _STR method

Only buffer objects are valid return values of _STR.

If something else is returned description_show() will access invalid memory.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/49xxx/CVE-2024-49860.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d1efe3c324ead77d3f6cd85093b50f6bd2e17aba
Fixed
92fd5209fc014405f63a7db79802ca4b01dc0c05
Fixed
2364b6af90c6b6d8a4783e0d3481ca80af699554
Fixed
4b081991c4363e072e1748efed0bbec8a77daba5
Fixed
0cdfb9178a3bba843c95c2117c82c15f1a64b9ce
Fixed
5c8d007c14aefc3f2ddf71e4c40713733dc827be
Fixed
f0921ecd4ddc14646bb5511f49db4d7d3b0829f0
Fixed
f51e5a88f2e7224858b261546cf6b3037dfb1323
Fixed
f51f711d36e61fbb87c67b524fd200e05172668d
Fixed
4bb1e7d027413835b086aed35bc3f0713bc0f72b

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-49860.json"