CVE-2024-46759

HIGH EPSS 19.9%
Published Sep 18, 20241y ago · Modified Jun 17, 20261w ago
7.8 CVSS 3.1
High
Find Similar
Published Sep 18, 2024 1y ago
Last Modified Jun 17, 2026 1w ago

Description

In the Linux kernel, the following vulnerability has been resolved: hwmon: (adc128d818) Fix underflows seen when writing limit attributes DIV_ROUND_CLOSEST() after kstrtol() results in an underflow if a large negative number such as -9223372036854775808 is provided by the user. Fix it by reordering clamp_val() and DIV_ROUND_CLOSEST() operations.

CVSS Details

Base Score
7.8
Exploitability
1.8
Impact
5.9
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
19.9% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Weaknesses 1

CWE-191

Affected Products 7

VendorProductVersionRange
linuxlinux_kernel* <4.19.322
linuxlinux_kernel*≥4.20  –  <5.4.284
linuxlinux_kernel*≥5.5  –  <5.10.226
linuxlinux_kernel*≥5.11  –  <5.15.167
linuxlinux_kernel*≥5.16  –  <6.1.110
linuxlinux_kernel*≥6.2  –  <6.6.51
linuxlinux_kernel*≥6.7  –  <6.10.10

References 12

  • cert-portal.siemens.com https://cert-portal.siemens.com/productcert/html/ssa-265688.html
  • cert-portal.siemens.com https://cert-portal.siemens.com/productcert/html/ssa-355557.html
  • git.kernel.org https://git.kernel.org/stable/c/019ef2d396363ecddc46e826153a842f8603799b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/05419d0056dcf7088687e561bb583cc06deba777
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/2a3add62f183459a057336381ef3a896da01ce38
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6891b11a0c6227ca7ed15786928a07b1c0e4d4af
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7645d783df23878342d5d8d22030c3861d2d5426
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/8cad724c8537fe3e0da8004646abc00290adae40
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b0bdb43852bf7f55ba02f0cbf00b4ea7ca897bff
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f7f5101af5b47a331cdbfa42ba64c507b47dd1fe
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2024/10/msg00003.html
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/019ef2d396363ecddc46e826153a842f8603799b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/05419d0056dcf7088687e561bb583cc06deba777
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/2a3add62f183459a057336381ef3a896da01ce38
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6891b11a0c6227ca7ed15786928a07b1c0e4d4af
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/7645d783df23878342d5d8d22030c3861d2d5426
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/8cad724c8537fe3e0da8004646abc00290adae40
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b0bdb43852bf7f55ba02f0cbf00b4ea7ca897bff
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/f7f5101af5b47a331cdbfa42ba64c507b47dd1fe
    Patch