CVE-2024-36015: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: ppdev: Add an error check in register_device In register_device, the return value of ida_simple_get is unchecked, in witch ida_simple_get will use an invalid index value. To address this issue, index should be checked after ida_simple_get. When the index value is abnormal, a warning message should be printed, the port should be dropped, and the value should be recorded.
Affected products
- Linux Linux Kernel: from 4.9.22, before 4.10 (fixed in 4.10); from 4.10.7, before 4.11 (fixed in 4.11); from 4.11.1, before 4.19.316 (fixed in 4.19.316); from 4.20, before 5.4.278 (fixed in 5.4.278); from 5.5, before 5.10.219 (fixed in 5.10.219); from 5.11, before 5.15.161 (fixed in 5.15.161); …
Published 2024-05-29. Last modified 2026-06-17.