PT-2024-6862 · Linux+7 · Linux Kernel+7

Stefan Wiehler

·

Published

2024-08-12

·

Updated

2025-09-29

·

CVE-2024-46743

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.52
Description The issue is related to a device address out-of-bounds read in the interrupt map walk. When of irq parse raw() is invoked with a device address smaller than the interrupt parent node, KASAN detects an out-of-bounds read. This can lead to a slab-out-of-bounds error in of irq parse raw(). The vulnerability is caused by not copying the device address into a buffer of sufficient size.
The of irq parse one() function is also involved in this issue, and the of irq parse raw() function is called with a device address that is too small. The error occurs when the addrsize is 3, but the size is only 2.
The vulnerability can be exploited by an attacker to impact the confidentiality and availability of protected information. However, there is no information about the estimated number of potentially affected devices worldwide or real-world incidents where this issue was exploited.
Recommendations To resolve the issue, update the Linux kernel to version 6.6.52 or later. This version includes the fix for the out-of-bounds read in the interrupt map walk.
Note: There is no information about specific mitigation measures or workarounds for this vulnerability. The only recommended solution is to update the Linux kernel to a version that includes the fix.

Exploit

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_12746
ALSA-2025_12752
ALSA-2025_12753
ALSA-2025_16880
ALT-PU-2024-12535
ALT-PU-2024-12537
ALT-PU-2024-12541
ALT-PU-2024-12968
ALT-PU-2024-12970
ALT-PU-2024-13121
ALT-PU-2024-13166
ALT-PU-2024-13260
ALT-PU-2024-13979
ALT-PU-2024-14046
ALT-PU-2024-15824
AZL-49427
BDU:2024-08084
CVE-2024-46743
DLA-3912-1
DLA-4008-1
DSA-5782-1
INFSA-2025_6966
MGASA-2024-0316
MGASA-2024-0318
OESA-2024-2216
OESA-2024-2218
OESA-2024-2220
OESA-2024-2323
OESA-2024-2367
OPENSUSE-SU-2024_3551-1
OPENSUSE-SU-2024_3561-1
OPENSUSE-SU-2024_3564-1
OPENSUSE-SU-2024_3587-1
OPENSUSE-SU-2024_3592-1
RHSA-2025:6966
RHSA-2025_6966
SUSE-SU-2024:3551-1
SUSE-SU-2024:3553-1
SUSE-SU-2024:3559-1
SUSE-SU-2024:3561-1
SUSE-SU-2024:3564-1
SUSE-SU-2024:3566-1
SUSE-SU-2024:3569-1
SUSE-SU-2024:3587-1
SUSE-SU-2024:3591-1
SUSE-SU-2024:3592-1
SUSE-SU-2025:20073-1
SUSE-SU-2025:20077-1
USN-7088-1
USN-7088-2
USN-7088-3
USN-7088-4
USN-7088-5
USN-7100-1
USN-7100-2
USN-7119-1
USN-7121-1
USN-7121-2
USN-7121-3
USN-7123-1
USN-7144-1
USN-7148-1
USN-7154-1
USN-7154-2
USN-7155-1
USN-7156-1
USN-7194-1
USN-7196-1

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Suse
Ubuntu