PT-2024-33813 · Linux+4 · Linux Kernel+4

Published

2024-06-28

·

Updated

2026-05-26

·

CVE-2024-49971

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Linux kernel (affected versions not specified)
Description: The issue arises from dml2 core shared mode support and dml core mode support accessing the third element of dummy boolean, which has a size of 2. This results in an OVERRUN when assigning a value to hw debug5. The problem is resolved by increasing the array size of dummy boolean to 3, thus fixing two OVERRUN issues reported by Coverity.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Resource Exhaustion

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-17211
ALT-PU-2025-12647
AZL-52053
AZL-52122
BDU:2025-16137
BDU:2025-16200
CVE-2024-49971
INFSA-2025_6966
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2025:14705-1
RHSA-2025:6966
RHSA-2025_6966
USN-7276-1
USN-7277-1
USN-7310-1

Affected Products

Alt Linux
Linuxmint
Linux Kernel
Red Hat
Ubuntu