PT-2024-7583 · Linux+7 · Linux Kernel+7

Junlin Li

·

Published

2024-08-09

·

Updated

2025-09-29

·

CVE-2024-47697

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.6.58
Description The issue is related to an out-of-bounds write error in the rtl2830 pid filter function in the Linux kernel's dvb-frontends/rtl2830 module. This error occurs when the index exceeds 31, causing an attempt to access a non-existent 33rd bit and leading to out-of-bounds access. The dev->filters value is 32 bits, and the set bit and clear bit functions should only operate on indices from 0 to 31. The vulnerability can be exploited to impact the confidentiality, integrity, and availability of protected information.
Recommendations To resolve this issue, update the Linux kernel to version 6.6.58 or later. As a temporary workaround, consider modifying the boundary check in the rtl2830 pid filter function from index > 32 to index >= 32 to prevent out-of-bounds access. Restrict access to the dvb-frontends/rtl2830 module to minimize the risk of exploitation until the issue is resolved.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-14046
ALT-PU-2024-14268
ALT-PU-2024-14270
ALT-PU-2024-14503
ALT-PU-2024-15739
ALT-PU-2024-16172
AZL-50778
AZL-51030
BDU:2024-08989
CVE-2024-47697
DLA-4008-1
DLA-4075-1
MGASA-2024-0344
MGASA-2024-0345
OESA-2024-2370
OESA-2024-2537
OESA-2025-1158
OESA-2025-1162
OPENSUSE-SU-2024:14500-1
OPENSUSE-SU-2024_3984-1
OPENSUSE-SU-2024_3986-1
OPENSUSE-SU-2024_4315-1
OPENSUSE-SU-2024_4376-1
OPENSUSE-SU-2025:14705-1
SUSE-SU-2024:3984-1
SUSE-SU-2024:3986-1
SUSE-SU-2024:4100-1
SUSE-SU-2024:4315-1
SUSE-SU-2024:4318-1
SUSE-SU-2024:4364-1
SUSE-SU-2024:4376-1
SUSE-SU-2024:4387-1
SUSE-SU-2025:0034-1
SUSE-SU-2025:20163-1
SUSE-SU-2025:20164-1
SUSE-SU-2025:20246-1
SUSE-SU-2025:20247-1
USN-7166-1
USN-7166-2
USN-7166-3
USN-7166-4
USN-7186-1
USN-7186-2
USN-7194-1
USN-7276-1
USN-7277-1
USN-7293-1
USN-7294-1
USN-7294-2
USN-7294-3
USN-7294-4
USN-7295-1
USN-7301-1
USN-7303-1
USN-7303-2
USN-7303-3
USN-7304-1
USN-7310-1
USN-7311-1
USN-7384-1
USN-7384-2
USN-7385-1
USN-7386-1
USN-7393-1
USN-7401-1
USN-7403-1
USN-7413-1
USN-7468-1
USN-7539-1
USN-7540-1

Affected Products

Alt Linux
Astra Linux
Debian
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu