CVE-2024-50205

Source
https://cve.org/CVERecord?id=CVE-2024-50205
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50205.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-50205
Downstream
Related
Published
2024-11-08T06:07:55.993Z
Modified
2026-03-20T12:39:37.992948Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
ALSA: firewire-lib: Avoid division by zero in apply_constraint_to_size()
Details

In the Linux kernel, the following vulnerability has been resolved:

ALSA: firewire-lib: Avoid division by zero in applyconstraintto_size()

The step variable is initialized to zero. It is changed in the loop, but if it's not changed it will remain zero. Add a variable check before the division.

The observed behavior was introduced by commit 826b5de90c0b ("ALSA: firewire-lib: fix insufficient PCM rule for period/buffer size"), and it is difficult to show that any of the interval parameters will satisfy the sndintervaltest() condition with data from the amdtpratetable[] table.

Found by Linux Verification Center (linuxtesting.org) with SVACE.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/50xxx/CVE-2024-50205.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
826b5de90c0bca4e9de6231da9e1730480621588
Fixed
d575414361630b8b0523912532fcd7c79e43468c
Fixed
5e431f85c87bbffd93a9830d5a576586f9855291
Fixed
7d4eb9e22131ec154e638cbd56629195c9bcbe9a
Fixed
d2826873db70a6719cdd9212a6739f3e6234cfc4
Fixed
4bdc21506f12b2d432b1f2667e5ff4c75eee58e3
Fixed
3452d39c4704aa12504e4190298c721fb01083c3
Fixed
72cafe63b35d06b5cfbaf807e90ae657907858da

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-50205.json"