CVE-2024-50008

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-50008
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50008.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-50008
Downstream
Related
Published
2024-10-21T18:54:01.348Z
Modified
2025-11-28T02:33:57.600013Z
Summary
wifi: mwifiex: Fix memcpy() field-spanning write warning in mwifiex_cmd_802_11_scan_ext()
Details

In the Linux kernel, the following vulnerability has been resolved:

wifi: mwifiex: Fix memcpy() field-spanning write warning in mwifiexcmd80211scan_ext()

Replace one-element array with a flexible-array member in struct host_cmd_ds_802_11_scan_ext.

With this, fix the following warning:

elo 16 17:51:58 surfacebook kernel: ------------[ cut here ]------------ elo 16 17:51:58 surfacebook kernel: memcpy: detected field-spanning write (size 243) of single field "extscan->tlvbuffer" at drivers/net/wireless/marvell/mwifiex/scan.c:2239 (size 1) elo 16 17:51:58 surfacebook kernel: WARNING: CPU: 0 PID: 498 at drivers/net/wireless/marvell/mwifiex/scan.c:2239 mwifiexcmd80211scan_ext+0x83/0x90 [mwifiex]

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/50xxx/CVE-2024-50008.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
b55c8848fdc81514ec047b2a0ec782ffe9ab5323
Fixed
f9310a6704bf52e2493480edea896e1f9b795d40
Fixed
1756918f51e9ab247a0f4782cc28853c2bb457c1
Fixed
e59bdb1ba594104cd0ee0af3ee9e4435d842a8fe
Fixed
17199b69a84798efffc475040fbef44374ef1de1
Fixed
fef7b51f22cf2049b0ca6740adeb0ba6f2e671dc
Fixed
71267bd4e8c752d7af6c6b96bb83984a6a95273d
Fixed
a3a12c30f9510f3753286fadbc6cdb7dad78c1d5
Fixed
498365e52bebcbc36a93279fe7e9d6aec8479cee

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.19.323
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.285
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.227
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.168
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.113
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.55
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.10.14
Type
ECOSYSTEM
Events
Introduced
6.11.0
Fixed
6.11.3