In the Linux kernel, the following vulnerability has been resolved:
firewire: nosy: ensure user_length is taken into account when fetching packet contents
Ensure that packet_buffer_get respects the user_length provided. If
the length of the head packet exceeds the user_length, packet_buffer_get
will now return 0 to signify to the user that no data were read
and a larger buffer size is required. Helps prevent user space overflows.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
22 Jan 2026, 20:39
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.kernel.org/stable/c/1fe60ee709436550f8cfbab01295936b868d5baa - Patch | |
| References | () https://git.kernel.org/stable/c/38762a0763c10c24a4915feee722d7aa6e73eb98 - Patch | |
| References | () https://git.kernel.org/stable/c/4ee0941da10e8fdcdb34756b877efd3282594c1f - Patch | |
| References | () https://git.kernel.org/stable/c/539d51ac48bcfcfa1b3d4a85f8df92fa22c1d41c - Patch | |
| References | () https://git.kernel.org/stable/c/67f34f093c0f7bf33f5b4ae64d3d695a3b978285 - Patch | |
| References | () https://git.kernel.org/stable/c/79f988d3ffc1aa778fc5181bdfab312e57956c6b - Patch | |
| References | () https://git.kernel.org/stable/c/7b8c7bd2296e95b38a6ff346242356a2e7190239 - Patch | |
| References | () https://git.kernel.org/stable/c/cca330c59c54207567a648357835f59df9a286bb - Patch | |
| References | () https://lists.debian.org/debian-lts-announce/2024/06/msg00019.html - Third Party Advisory | |
| References | () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html - Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DW2MIOIMOFUSNLHLRYX23AFR36BMKD65/ - Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OTB4HWU2PTVW5NEYHHLOCXDKG3PYA534/ - Third Party Advisory | |
| CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc6:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:6.9:rc2:*:*:*:*:*:* |
|
| First Time |
Linux
Fedoraproject fedora Fedoraproject Debian debian Linux Debian Linux linux Kernel |
|
| CWE | NVD-CWE-noinfo | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.1 |
21 Nov 2024, 09:04
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| References | () https://git.kernel.org/stable/c/1fe60ee709436550f8cfbab01295936b868d5baa - | |
| References | () https://git.kernel.org/stable/c/38762a0763c10c24a4915feee722d7aa6e73eb98 - | |
| References | () https://git.kernel.org/stable/c/4ee0941da10e8fdcdb34756b877efd3282594c1f - | |
| References | () https://git.kernel.org/stable/c/539d51ac48bcfcfa1b3d4a85f8df92fa22c1d41c - | |
| References | () https://git.kernel.org/stable/c/67f34f093c0f7bf33f5b4ae64d3d695a3b978285 - | |
| References | () https://git.kernel.org/stable/c/79f988d3ffc1aa778fc5181bdfab312e57956c6b - | |
| References | () https://git.kernel.org/stable/c/7b8c7bd2296e95b38a6ff346242356a2e7190239 - | |
| References | () https://git.kernel.org/stable/c/cca330c59c54207567a648357835f59df9a286bb - |
05 Nov 2024, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 Jun 2024, 14:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
27 Jun 2024, 12:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jun 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
10 Jun 2024, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
17 May 2024, 11:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| References |
|
14 May 2024, 15:12
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-05-14 15:12
Updated : 2026-01-22 20:39
NVD link : CVE-2024-27401
Mitre link : CVE-2024-27401
CVE.ORG link : CVE-2024-27401
JSON object : View
Products Affected
debian
- debian_linux
fedoraproject
- fedora
linux
- linux_kernel
CWE
