CVE-2024-53150

HIGH CISA KEV EPSS 67.4%
Published Dec 24, 20241y ago · Modified Jun 17, 20261w ago
7.1 CVSS 3.1
High
Find Similar
Published Dec 24, 2024 1y ago
Last Modified Jun 17, 2026 1w ago
KEV Listed Apr 9, 2025 1y ago
KEV Due Apr 30, 2025 426d overdue

Description

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Fix out of bounds reads when finding clock sources The current USB-audio driver code doesn't check bLength of each descriptor at traversing for clock descriptors. That is, when a device provides a bogus descriptor with a shorter bLength, the driver might hit out-of-bounds reads. For addressing it, this patch adds sanity checks to the validator functions for the clock descriptor traversal. When the descriptor length is shorter than expected, it's skipped in the loop. For the clock source and clock multiplier descriptors, we can just check bLength against the sizeof() of each descriptor type. OTOH, the clock selector descriptor of UAC2 and UAC3 has an array of bNrInPins elements and two more fields at its tail, hence those have to be checked in addition to the sizeof() check.

CVSS Details

Base Score
7.1
Exploitability
1.8
Impact
5.2
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability High

Threat Intelligence

CISA Known Exploited Overdue 426d
Added
Apr 9, 2025
Due
Apr 30, 2025

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

EPSS Exploit Probability
67.4% percentile
Exploit & Patch Status
Actively Exploited (KEV)
Patch Available

Weaknesses 1

CWE-125 Out-of-bounds Read Memory Safety

Affected Products 8

VendorProductVersionRange
debiandebian_linux11.0any
linuxlinux_kernel* <5.4.287
linuxlinux_kernel*≥5.5  –  <5.10.231
linuxlinux_kernel*≥5.11  –  <5.15.174
linuxlinux_kernel*≥5.16  –  <6.1.120
linuxlinux_kernel*≥6.2  –  <6.6.64
linuxlinux_kernel*≥6.7  –  <6.11.11
linuxlinux_kernel*≥6.12  –  <6.12.2

References 11

  • git.kernel.org https://git.kernel.org/stable/c/096bb5b43edf755bc4477e64004fa3a20539ec2f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/45a92cbc88e4013bfed7fd2ccab3ade45f8e896b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/74cb86e1006c5437b1d90084d22018da30fddc77
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a3dd4d63eeb452cfb064a13862fb376ab108f6a6
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a632bdcb359fd8145e86486ff8612da98e239acd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ab011f7439d9bbfd34fd3b9cef4b2d6d952c9bb9
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/da13ade87a12dd58829278bc816a61bea06a56a9
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ea0fa76f61cf8e932d1d26e6193513230816e11d
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html
    Mailing List
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html
    Mailing List
  • cisa.gov https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-53150
    US Government Resource

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/096bb5b43edf755bc4477e64004fa3a20539ec2f
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/45a92cbc88e4013bfed7fd2ccab3ade45f8e896b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/74cb86e1006c5437b1d90084d22018da30fddc77
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a3dd4d63eeb452cfb064a13862fb376ab108f6a6
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/a632bdcb359fd8145e86486ff8612da98e239acd
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ab011f7439d9bbfd34fd3b9cef4b2d6d952c9bb9
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/da13ade87a12dd58829278bc816a61bea06a56a9
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/ea0fa76f61cf8e932d1d26e6193513230816e11d
    Patch